All 4 CVE vulnerabilities found in FOIAXpress Public Access Link (PAL), with AI-generated Chinese analysis, references, and POCs.
Vendor: OPEXUS
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-58462 | OPEXUS FOIAXpress PAL SQL injection CWE-89 | 9.8 | Critical | 2025-09-09 |
| CVE-2025-54833 | OPEXUS FOIAXpress Public Access Link (PAL) account-lockout and CAPTCHA protection bypass CWE-307 | 5.3 | Medium | 2025-07-31 |
| CVE-2025-54834 | OPEXUS FOIAXpress Public Access Link (PAL) unauthenticated username enumeration CWE-204 | 5.3 | Medium | 2025-07-31 |
| CVE-2025-54832 | OPEXUS FOIAXpress Public Access Link (PAL) state and territory list unauthorized modification CWE-472 | 4.3 | Medium | 2025-07-31 |
All 4 known CVE vulnerabilities affecting FOIAXpress Public Access Link (PAL) with full Chinese analysis, references, and POCs where available.