CVE-2025-69614
EUVD-2025-20850610.03.2026, 18:18
Incorrect Access Control via activation token reuse on the password-reset endpoint allowing unauthorized password resets and full account takeover. Affected Product: Deutsche Telekom AG Telekom Account Management Portal, versions before 2025-10-27, fixed 2025-10-31.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| telekom | account_management_portal | 𝑥 < 2025-10-27 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration