{"id":"CVE-2025-71421","aliases":[],"url":"https://o3.security/vulnerability/CVE-2025-71421","summary":"UVdesk core-framework before 1.1.7 contains an improper privilege management vulnerability in the editAgent endpoint that allows agents with agent-management privilege to escalate their…","details":"UVdesk core-framework before 1.1.7 contains an improper privilege management vulnerability in the editAgent endpoint that allows agents with agent-management privilege to escalate their own role to administrator. Attackers can submit their own account identifier with a role parameter set to ROLE_ADMIN to gain full administrative control over agents, tickets, and mail configuration.","published":"2026-09-21T14:17:14.897","modified":"2026-09-21T14:17:14.897","cvss":{"score":7.2,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":{"url":"https://github.com/uvdesk/core-framework/commit/b8bcdc503659f9d5c5cd73627cfc5d45508b9a55","label":"uvdesk/core-framework@b8bcdc5"},"references":[{"type":"WEB","url":"https://github.com/uvdesk/community-skeleton/releases/tag/v1.1.8"},{"type":"WEB","url":"https://github.com/uvdesk/core-framework"},{"type":"WEB","url":"https://github.com/uvdesk/core-framework/blob/v1.1.6/Controller/Account.php#L278-L282"},{"type":"WEB","url":"https://github.com/uvdesk/core-framework/commit/b8bcdc503659f9d5c5cd73627cfc5d45508b9a55"},{"type":"WEB","url":"https://github.com/uvdesk/core-framework/releases/tag/v1.1.7"},{"type":"WEB","url":"https://hackmd.io/@leediay/B1Cz5voFGg"},{"type":"WEB","url":"https://www.vulncheck.com/advisories/uvdesk-core-framework-before-1.1.7-privilege-escalation-via-editagent"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-09-21T14:17:14.897"}}