Aksis AxOnboard Authorization Bypass Vulnerability Allowing Exploitation of Trusted Identifiers

Vulnerability

A vulnerability allowing authorization bypass through user-controlled keys has been identified in Aksis Computer Services and Consulting Inc. AxOnboard, specifically in versions 3.2.0 prior to 3.3.0. This vulnerability allows the exploitation of trusted identifiers, potentially leading to unauthorized actions or access within the application.

Impact

Exploitation of this vulnerability could allow attackers to bypass authorization mechanisms, enabling them to manipulate trusted identifiers and potentially gain unauthorized access or privileges within the application.

Remediation

Users are advised to upgrade to version 3.3.0 or later.

Added: Dec 11, 2025, 1:18 PM
Updated: Dec 11, 2025, 1:18 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
5.2
remediation
7.7
relevance
1.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.