CVE-2025-7708

Insertion of Sensitive Information Into Sent Data vulnerability in Atlas Educational Software Industry Ltd. Co. K12net allows Communication Channel Manipulation.This issue affects k12net: through 09022026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Scoring

Severity
MEDIUM
CVSS base score
6.8
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:L
EPSS probability
0.26%
CWE
CWE-201
Published
2026-02-09
Last modified
2026-08-13

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs