Security Advisory - IXSA-20250310-01

Advisory ID IXSA-20250310-01
Version 1.0
Last updated 10.03.2025
Published 10.03.2025
Status Resolved
CVEs CVE-2025-26816
Summary Vulnerability in Intrexx Portal Server allows display of data from different user context.
Type/Severity High
Description A vulnerability in Intrexx Portal Server 12.0.2 and earlier which was classified as problematic potentially allows users with particular permissions under certain conditions to see potentially sensitive data from a different user context.
Solution Please install Intrexx version 12.0.3 or 11.9.3 immediately.
Affected Products
  • Intrexx Portal Server <= 12.0.2 (this includes all supported version of major versions 11 and 12)
Fixes
  • Intrexx Version 12.0.3 (12.0.3.20250224), Released on 24.02.2025
  • Intrexx Version 11.9.3 (11.9.3.20250220), Released on 24.02.2025
References