Unrated severityNVD Advisory· Published Nov 26, 2025· Updated Dec 3, 2025
CVE-2025-65238
CVE-2025-65238
Description
Incorrect access control in the getSubUsersByProvider function of OpenCode Systems USSD Gateway OC Release: 5 Version 6.13.11 allows attackers with low-level privileges to dump user records and access sensitive information.
Affected products
2- OpenCode Systems/USSD Gateway OCdescription
- Range: = 5 Version 6.13.11
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.