Vulnerability Description
Smart Parking Management System from Honding Technology has a Missing Authorization vulnerability, allowing remote attackers with regular privileges to access a specific functionality to create administrator accounts, and subsequently log into the system using those accounts.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://www.twcert.org.tw/en/cp-139-10171-44c0a-2.html
- https://www.twcert.org.tw/tw/cp-132-10170-e2435-1.html
FAQ
What is CVE-2025-5894?
CVE-2025-5894 is a vulnerability with a CVSS score of 8.8 (HIGH). Smart Parking Management System from Honding Technology has a Missing Authorization vulnerability, allowing remote attackers with regular privileges to access a specific functionality to create admini...
How severe is CVE-2025-5894?
CVE-2025-5894 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-5894?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.