Medium severity4.3NVD Advisory· Published Nov 26, 2025· Updated Jun 17, 2026
CVE-2025-65239
CVE-2025-65239
Description
Incorrect access control in the /aux1/ocussd/trace endpoint of OpenCode Systems USSD Gateway OC Release:5, version 6.13.11 allows attackers with low-level privileges to read server logs.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
36.13.11+ 2 more
- (no CPE)range: 6.13.11
- (no CPE)
- cpe:2.3:a:opencode:ussd_gateway:6.13.11:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- eslam3kl.gitbook.io/blog/web-application-findings/cve-2025-65239-ussd-gateway-broken-access-control-logsnvdExploitThird Party Advisory
- eslam3kl.gitbook.ionvdNot Applicable
News mentions
0No linked articles in our index yet.