CVE-2025-25225

CVE-2025-25225: Extension - hikashop.com - Privilege escalation vulnerability Hikashop component version 1.0.0 - 5.1.3 for Joomla

Vendor Hikashop.com
Product Hikashop component for Joomla
Weakness CWE-284
Published March 15, 2025
Last update March 19, 2025

CVSS base score

What the vulnerability does

Description

A privilege escalation vulnerability in the Hikashop component versions 1.0.0-5.1.3 for Joomla allows authenticated attackers (administrator) to escalate their privileges to Super Admin Permissions.

Key dates

Disclosure timeline

March 15, 2025 CVE published
March 19, 2025 Record updated