← Back to CVE List
CVE-2025-3574
Insecure Direct Object Reference vulnerability in Deporsite from T-INNOVA allows an attacker to retrieve sensitive information from others users via "idUsuario" parameter in "/helper/Familia/obtenerFamiliaUsuario" endpoint.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt