📦 Bold Workplanner

by Boldworkplanner

🔍 What is Bold Workplanner?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-41098

HIGH CVSS 7.5 Sep 30, 2025

This CVE describes an Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner's general enquiry web service that allows unauthorized access to sensitive data. Attackers can manipulat...

CVE-2025-41094

MEDIUM CVSS 4.3 Sep 30, 2025

This CVE describes an Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner software that allows authenticated users to access contract details they shouldn't have permission to vi...

CVE-2025-41095

MEDIUM CVSS 4.3 Sep 30, 2025

This CVE describes an Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner software. Authenticated users can access planning counter details using unauthorized internal identifier...

CVE-2025-41096

MEDIUM CVSS 4.3 Sep 30, 2025

This CVE describes an Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner software that allows authenticated users to access contract date information using unauthorized internal...

CVE-2025-41097

MEDIUM CVSS 4.3 Sep 30, 2025

This CVE describes an Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner software that allows authenticated users to access basic employee details using unauthorized internal id...

CVE-2025-41091

MEDIUM CVSS 4.3 Sep 30, 2025

This CVE describes an Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner that allows authenticated users to access calendar details using unauthorized internal identifiers. The ...

CVE-2025-41092

MEDIUM CVSS 4.3 Sep 30, 2025

This IDOR vulnerability in BOLD Workplanner allows authenticated users to access time records details using unauthorized internal identifiers due to insufficient input validation. It affects organizat...

CVE-2025-41093

MEDIUM CVSS 4.3 Sep 30, 2025

An Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner allows authenticated users to access basic contract details using unauthorized internal identifiers. This affects BOLD Work...