Vulnerability Description
mCarFix Motorists App version 2.3 (package name com.skytop.mcarfix), developed by Paniel Mwaura, contains improper access control vulnerabilities. Attackers may bypass verification to arbitrarily register accounts, and by tampering with sequential numeric IDs, gain unauthorized access to user data and groups. Successful exploitation could result in fake account creation, privacy breaches, and misuse of the platform.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-61118?
CVE-2025-61118 is a vulnerability with a CVSS score of 7.5 (HIGH). mCarFix Motorists App version 2.3 (package name com.skytop.mcarfix), developed by Paniel Mwaura, contains improper access control vulnerabilities. Attackers may bypass verification to arbitrarily regi...
How severe is CVE-2025-61118?
CVE-2025-61118 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-61118?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.