CVE-2025-51628

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Insecure Direct Object Reference (IDOR) vulnerability in PdfHandler component in Agenzia Impresa Eccobook v2.81.1 and below allows unauthenticated attackers to read confidential documents via the DocumentoId parameter.

Published 2025-08-05. Last modified 2026-07-05.