A privilege escalation vulnerability in the Hikashop component versions 1.0.0-5.1.3 for Joomla allows authenticated attackers (administrator) to escalate their privileges to Super Admin Permissions.
References
| Link | Resource |
|---|---|
| https://github.com/AdamWallwork/CVEs/tree/main/2025/CVE-2025-25225 | Third Party Advisory |
| https://www.hikashop.com/ | Product |
Configurations
History
28 May 2025, 18:04
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:hikashop:hikashop:*:*:*:*:*:joomla\!:*:* | |
| First Time |
Hikashop
Hikashop hikashop |
|
| CWE | NVD-CWE-noinfo | |
| References | () https://github.com/AdamWallwork/CVEs/tree/main/2025/CVE-2025-25225 - Third Party Advisory | |
| References | () https://www.hikashop.com/ - Product |
18 Mar 2025, 17:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
15 Mar 2025, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-03-15 18:15
Updated : 2025-05-28 18:04
NVD link : CVE-2025-25225
Mitre link : CVE-2025-25225
CVE.ORG link : CVE-2025-25225
JSON object : View
Products Affected
hikashop
- hikashop
CWE
