CVE-2025-8807 | xujeff tianti 天梯 up to 2.3 save authorization (EUVD-2025-24089)
A vulnerability identified as critical has been detected in xujeff tianti 天梯 up to 2.3. Impacted is an unknown function of the file /tianti-module-admin/user/ajax/save. Performing manipulation results in missing authorization.
This vulnerability is known as CVE-2025-8807. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.