{"api_version":"1","generated_at":"2026-08-22T14:35:59+00:00","cve":"CVE-2025-15039","urls":{"html":"https://cve.report/CVE-2025-15039","api":"https://cve.report/api/cve/CVE-2025-15039.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2025-15039","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2025-15039"},"summary":{"title":"Account Takeover via Conditional Authentication Script Logic in Multiple WSO2 Products","description":"The Conditional Authentication (Adaptive Authentication) script does not correctly enforce the completion of all required authentication steps when a specific multi-step pattern involving certain authenticators is configured. This allows an attacker to bypass intermediate authentication challenges by exploiting how the script handles callbacks and re-execution of authentication steps.\n\nSuccessful exploitation allows a malicious actor to gain unauthorized access to a targeted user account. This vulnerability can only be exploited when all of the following conditions are met: the application login flow contains a specific secondary authenticator, the Conditional Authentication script is configured with particular event callbacks and re-executes an authentication step, the targeted user has one of the impacted authenticators enrolled, and the attacker successfully completes any preceding authentication steps.","state":"PUBLISHED","assigner":"WSO2","published_at":"2026-08-06 08:16:29","updated_at":"2026-08-12 19:32:37"},"problem_types":["CWE-693","CWE-693 CWE-693: Protection Mechanism Failure"],"metrics":[{"version":"3.1","source":"ed10eef1-636d-4fbe-9993-6890dfa878f8","type":"Secondary","score":"9.4","severity":"CRITICAL","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L","data":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L","baseScore":9.4,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"LOW"}},{"version":"3.1","source":"CNA","type":"CVSS","score":"9.4","severity":"CRITICAL","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L","data":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"LOW","baseScore":9.4,"baseSeverity":"CRITICAL","confidentialityImpact":"HIGH","integrityImpact":"HIGH","privilegesRequired":"NONE","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L","version":"3.1"}}],"references":[{"url":"https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2025-4973/","name":"https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2025-4973/","refsource":"ed10eef1-636d-4fbe-9993-6890dfa878f8","tags":["Vendor Advisory"],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2025-15039","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2025-15039","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"unknown 5.7.0 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 5.7.0 5.7.0.130 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 5.8.0 5.8.0.113 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 5.9.0 5.9.0.173 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 5.10.0 5.10.0.385 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 5.11.0 5.11.0.432 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 6.0.0 6.0.0.259 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 6.1.0 6.1.0.260 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 7.0.0 7.0.0.138 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 7.1.0 7.1.0.45 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 7.1.0 7.1.0.49 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server","version":"affected 7.2.0 7.2.0.7 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"unknown 2.6.0 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 2.6.0 2.6.0.150 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 3.0.0 3.0.0.180 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 3.1.0 3.1.0.356 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 3.2.0 3.2.0.460 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 3.2.1 3.2.1.79 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 4.0.0 4.0.0.381 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 4.1.0 4.1.0.244 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 4.2.0 4.2.0.184 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 4.3.0 4.3.0.95 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 4.4.0 4.4.0.59 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 4.5.0 4.5.0.44 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Manager","version":"affected 4.6.0 4.6.0.8 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Open Banking AM","version":"unknown 1.4.0 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Open Banking AM","version":"affected 1.4.0 1.4.0.143 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Open Banking AM","version":"affected 1.5.0 1.5.0.144 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Open Banking AM","version":"affected 2.0.0 2.0.0.405 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Open Banking IAM","version":"unknown 2.0.0 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Open Banking IAM","version":"affected 2.0.0 2.0.0.425 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Traffic Manager","version":"unknown 4.5.0 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Traffic Manager","version":"affected 4.5.0 4.5.0.43 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Traffic Manager","version":"affected 4.6.0 4.6.0.8 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Universal Gateway","version":"affected 4.5.0 4.5.0.43 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Universal Gateway","version":"affected 4.5.0 4.5.0.44 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Universal Gateway","version":"affected 4.6.0 4.6.0.8 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Control Plane","version":"affected 4.5.0 4.5.0.45 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 API Control Plane","version":"affected 4.6.0 4.6.0.9 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server as Key Manager","version":"unknown 5.7.0 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server as Key Manager","version":"affected 5.7.0 5.7.0.129 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server as Key Manager","version":"affected 5.9.0 5.9.0.179 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Identity Server as Key Manager","version":"affected 5.10.0 5.10.0.376 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Open Banking KM","version":"unknown 1.4.0 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Open Banking KM","version":"affected 1.4.0 1.4.0.137 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Open Banking KM","version":"affected 1.5.0 1.5.0.127 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.12.153 5.12.153.66 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.12.387 5.12.387.48 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.14.97 5.14.97.94 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.17.5 5.17.5.337 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.17.118 5.17.118.24 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.18.187 5.18.187.334 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.18.248 5.18.248.34 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.23.8 5.23.8.221 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.24.8 5.24.8.29 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.25.92 5.25.92.177 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.25.705 5.25.705.23 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.25.713 5.25.713.12 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.25.724 5.25.724.8 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 5.25.736 5.25.736.3 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 7.0.78 7.0.78.171 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 7.8.23 7.8.23.95 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"affected 7.8.586 7.8.586.21 custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"unaffected 5.25.738 5.25.* custom","platforms":[]},{"source":"CNA","vendor":"WSO2","product":"WSO2 Carbon Identity Application Authentication Framework","version":"unaffected 7.8.646 * custom","platforms":[]}],"timeline":[],"solutions":[{"source":"CNA","title":"","value":"Follow the instructions given on https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2025-4973/#solution","time":"","lang":"en"}],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2025","cve_id":"15039","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"wso2","cpe5":"api_control_plane","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":{"cve_year":"2025","cve_id":"15039","cve":"CVE-2025-15039","epss":"0.003910000","percentile":"0.318760000","score_date":"2026-08-09","updated_at":"2026-08-10 00:07:36"},"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"metrics":[{"other":{"content":{"id":"CVE-2025-15039","options":[{"Exploitation":"none"},{"Automatable":"yes"},{"Technical Impact":"total"}],"role":"CISA Coordinator","timestamp":"2026-08-06T12:31:35.881685Z","version":"2.0.3"},"type":"ssvc"}}],"providerMetadata":{"dateUpdated":"2026-08-06T12:31:43.779Z","orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP"},"title":"CISA ADP Vulnrichment"}],"cna":{"affected":[{"defaultStatus":"unaffected","product":"WSO2 Identity Server","vendor":"WSO2","versions":[{"lessThan":"5.7.0","status":"unknown","version":"0","versionType":"custom"},{"lessThan":"5.7.0.130","status":"affected","version":"5.7.0","versionType":"custom"},{"lessThan":"5.8.0.113","status":"affected","version":"5.8.0","versionType":"custom"},{"lessThan":"5.9.0.173","status":"affected","version":"5.9.0","versionType":"custom"},{"lessThan":"5.10.0.385","status":"affected","version":"5.10.0","versionType":"custom"},{"lessThan":"5.11.0.432","status":"affected","version":"5.11.0","versionType":"custom"},{"lessThan":"6.0.0.259","status":"affected","version":"6.0.0","versionType":"custom"},{"lessThan":"6.1.0.260","status":"affected","version":"6.1.0","versionType":"custom"},{"lessThan":"7.0.0.138","status":"affected","version":"7.0.0","versionType":"custom"},{"lessThan":"7.1.0.45","status":"affected","version":"7.1.0","versionType":"custom"},{"lessThan":"7.1.0.49","status":"affected","version":"7.1.0","versionType":"custom"},{"lessThan":"7.2.0.7","status":"affected","version":"7.2.0","versionType":"custom"}]},{"defaultStatus":"unaffected","product":"WSO2 API Manager","vendor":"WSO2","versions":[{"lessThan":"2.6.0","status":"unknown","version":"0","versionType":"custom"},{"lessThan":"2.6.0.150","status":"affected","version":"2.6.0","versionType":"custom"},{"lessThan":"3.0.0.180","status":"affected","version":"3.0.0","versionType":"custom"},{"lessThan":"3.1.0.356","status":"affected","version":"3.1.0","versionType":"custom"},{"lessThan":"3.2.0.460","status":"affected","version":"3.2.0","versionType":"custom"},{"lessThan":"3.2.1.79","status":"affected","version":"3.2.1","versionType":"custom"},{"lessThan":"4.0.0.381","status":"affected","version":"4.0.0","versionType":"custom"},{"lessThan":"4.1.0.244","status":"affected","version":"4.1.0","versionType":"custom"},{"lessThan":"4.2.0.184","status":"affected","version":"4.2.0","versionType":"custom"},{"lessThan":"4.3.0.95","status":"affected","version":"4.3.0","versionType":"custom"},{"lessThan":"4.4.0.59","status":"affected","version":"4.4.0","versionType":"custom"},{"lessThan":"4.5.0.44","status":"affected","version":"4.5.0","versionType":"custom"},{"lessThan":"4.6.0.8","status":"affected","version":"4.6.0","versionType":"custom"}]},{"defaultStatus":"unaffected","product":"WSO2 Open Banking AM","vendor":"WSO2","versions":[{"lessThan":"1.4.0","status":"unknown","version":"0","versionType":"custom"},{"lessThan":"1.4.0.143","status":"affected","version":"1.4.0","versionType":"custom"},{"lessThan":"1.5.0.144","status":"affected","version":"1.5.0","versionType":"custom"},{"lessThan":"2.0.0.405","status":"affected","version":"2.0.0","versionType":"custom"}]},{"defaultStatus":"unaffected","product":"WSO2 Open Banking IAM","vendor":"WSO2","versions":[{"lessThan":"2.0.0","status":"unknown","version":"0","versionType":"custom"},{"lessThan":"2.0.0.425","status":"affected","version":"2.0.0","versionType":"custom"}]},{"defaultStatus":"unaffected","product":"WSO2 Traffic Manager","vendor":"WSO2","versions":[{"lessThan":"4.5.0","status":"unknown","version":"0","versionType":"custom"},{"lessThan":"4.5.0.43","status":"affected","version":"4.5.0","versionType":"custom"},{"lessThan":"4.6.0.8","status":"affected","version":"4.6.0","versionType":"custom"}]},{"defaultStatus":"unaffected","product":"WSO2 Universal Gateway","vendor":"WSO2","versions":[{"lessThan":"4.5.0.43","status":"affected","version":"4.5.0","versionType":"custom"},{"lessThan":"4.5.0.44","status":"affected","version":"4.5.0","versionType":"custom"},{"lessThan":"4.6.0.8","status":"affected","version":"4.6.0","versionType":"custom"}]},{"defaultStatus":"unaffected","product":"WSO2 API Control Plane","vendor":"WSO2","versions":[{"lessThan":"4.5.0.45","status":"affected","version":"4.5.0","versionType":"custom"},{"lessThan":"4.6.0.9","status":"affected","version":"4.6.0","versionType":"custom"}]},{"defaultStatus":"unaffected","product":"WSO2 Identity Server as Key Manager","vendor":"WSO2","versions":[{"lessThan":"5.7.0","status":"unknown","version":"0","versionType":"custom"},{"lessThan":"5.7.0.129","status":"affected","version":"5.7.0","versionType":"custom"},{"lessThan":"5.9.0.179","status":"affected","version":"5.9.0","versionType":"custom"},{"lessThan":"5.10.0.376","status":"affected","version":"5.10.0","versionType":"custom"}]},{"defaultStatus":"unaffected","product":"WSO2 Open Banking KM","vendor":"WSO2","versions":[{"lessThan":"1.4.0","status":"unknown","version":"0","versionType":"custom"},{"lessThan":"1.4.0.137","status":"affected","version":"1.4.0","versionType":"custom"},{"lessThan":"1.5.0.127","status":"affected","version":"1.5.0","versionType":"custom"}]},{"defaultStatus":"unknown","packageName":"org.wso2.carbon.identity.framework:org.wso2.carbon.identity.application.authentication.framework","product":"WSO2 Carbon Identity Application Authentication Framework","vendor":"WSO2","versions":[{"lessThan":"5.12.153.66","status":"affected","version":"5.12.153","versionType":"custom"},{"lessThan":"5.12.387.48","status":"affected","version":"5.12.387","versionType":"custom"},{"lessThan":"5.14.97.94","status":"affected","version":"5.14.97","versionType":"custom"},{"lessThan":"5.17.5.337","status":"affected","version":"5.17.5","versionType":"custom"},{"lessThan":"5.17.118.24","status":"affected","version":"5.17.118","versionType":"custom"},{"lessThan":"5.18.187.334","status":"affected","version":"5.18.187","versionType":"custom"},{"lessThan":"5.18.248.34","status":"affected","version":"5.18.248","versionType":"custom"},{"lessThan":"5.23.8.221","status":"affected","version":"5.23.8","versionType":"custom"},{"lessThan":"5.24.8.29","status":"affected","version":"5.24.8","versionType":"custom"},{"lessThan":"5.25.92.177","status":"affected","version":"5.25.92","versionType":"custom"},{"lessThan":"5.25.705.23","status":"affected","version":"5.25.705","versionType":"custom"},{"lessThan":"5.25.713.12","status":"affected","version":"5.25.713","versionType":"custom"},{"lessThan":"5.25.724.8","status":"affected","version":"5.25.724","versionType":"custom"},{"lessThan":"5.25.736.3","status":"affected","version":"5.25.736","versionType":"custom"},{"lessThan":"7.0.78.171","status":"affected","version":"7.0.78","versionType":"custom"},{"lessThan":"7.8.23.95","status":"affected","version":"7.8.23","versionType":"custom"},{"lessThan":"7.8.586.21","status":"affected","version":"7.8.586","versionType":"custom"},{"lessThanOrEqual":"5.25.*","status":"unaffected","version":"5.25.738","versionType":"custom"},{"lessThanOrEqual":"*","status":"unaffected","version":"7.8.646","versionType":"custom"}]}],"cpeApplicability":[{"nodes":[{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"5.7.0.130","versionStartIncluding":"5.7.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"5.8.0.113","versionStartIncluding":"5.8.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"5.9.0.173","versionStartIncluding":"5.9.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"5.10.0.385","versionStartIncluding":"5.10.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"5.11.0.432","versionStartIncluding":"5.11.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"6.0.0.259","versionStartIncluding":"6.0.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"6.1.0.260","versionStartIncluding":"6.1.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"7.0.0.138","versionStartIncluding":"7.0.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"7.1.0.45","versionStartIncluding":"7.1.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"7.1.0.49","versionStartIncluding":"7.1.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server:*:*:*:*:*:*:*:*","versionEndExcluding":"7.2.0.7","versionStartIncluding":"7.2.0","vulnerable":true}],"negate":false,"operator":"OR"},{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"2.6.0.150","versionStartIncluding":"2.6.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"3.0.0.180","versionStartIncluding":"3.0.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"3.1.0.356","versionStartIncluding":"3.1.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"3.2.0.460","versionStartIncluding":"3.2.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"3.2.1.79","versionStartIncluding":"3.2.1","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"4.0.0.381","versionStartIncluding":"4.0.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"4.1.0.244","versionStartIncluding":"4.1.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"4.2.0.184","versionStartIncluding":"4.2.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"4.3.0.95","versionStartIncluding":"4.3.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"4.4.0.59","versionStartIncluding":"4.4.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"4.5.0.44","versionStartIncluding":"4.5.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"4.6.0.8","versionStartIncluding":"4.6.0","vulnerable":true}],"negate":false,"operator":"OR"},{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_open_banking_am:*:*:*:*:*:*:*:*","versionEndExcluding":"1.4.0.143","versionStartIncluding":"1.4.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_open_banking_am:*:*:*:*:*:*:*:*","versionEndExcluding":"1.5.0.144","versionStartIncluding":"1.5.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_open_banking_am:*:*:*:*:*:*:*:*","versionEndExcluding":"2.0.0.405","versionStartIncluding":"2.0.0","vulnerable":true}],"negate":false,"operator":"OR"},{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_open_banking_iam:*:*:*:*:*:*:*:*","versionEndExcluding":"2.0.0.425","versionStartIncluding":"2.0.0","vulnerable":true}],"negate":false,"operator":"OR"},{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_traffic_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"4.5.0.43","versionStartIncluding":"4.5.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_traffic_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"4.6.0.8","versionStartIncluding":"4.6.0","vulnerable":true}],"negate":false,"operator":"OR"},{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_universal_gateway:*:*:*:*:*:*:*:*","versionEndExcluding":"4.5.0.43","versionStartIncluding":"4.5.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_universal_gateway:*:*:*:*:*:*:*:*","versionEndExcluding":"4.5.0.44","versionStartIncluding":"4.5.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_universal_gateway:*:*:*:*:*:*:*:*","versionEndExcluding":"4.6.0.8","versionStartIncluding":"4.6.0","vulnerable":true}],"negate":false,"operator":"OR"},{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_api_control_plane:*:*:*:*:*:*:*:*","versionEndExcluding":"4.5.0.45","versionStartIncluding":"4.5.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_api_control_plane:*:*:*:*:*:*:*:*","versionEndExcluding":"4.6.0.9","versionStartIncluding":"4.6.0","vulnerable":true}],"negate":false,"operator":"OR"},{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_identity_server_as_key_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"5.7.0.129","versionStartIncluding":"5.7.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server_as_key_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"5.9.0.179","versionStartIncluding":"5.9.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_identity_server_as_key_manager:*:*:*:*:*:*:*:*","versionEndExcluding":"5.10.0.376","versionStartIncluding":"5.10.0","vulnerable":true}],"negate":false,"operator":"OR"},{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_open_banking_km:*:*:*:*:*:*:*:*","versionEndExcluding":"1.4.0.137","versionStartIncluding":"1.4.0","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_open_banking_km:*:*:*:*:*:*:*:*","versionEndExcluding":"1.5.0.127","versionStartIncluding":"1.5.0","vulnerable":true}],"negate":false,"operator":"OR"},{"cpeMatch":[{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.12.153.66","versionStartIncluding":"5.12.153","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.12.387.48","versionStartIncluding":"5.12.387","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.14.97.94","versionStartIncluding":"5.14.97","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.17.5.337","versionStartIncluding":"5.17.5","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.17.118.24","versionStartIncluding":"5.17.118","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.18.187.334","versionStartIncluding":"5.18.187","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.18.248.34","versionStartIncluding":"5.18.248","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.23.8.221","versionStartIncluding":"5.23.8","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.24.8.29","versionStartIncluding":"5.24.8","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.25.92.177","versionStartIncluding":"5.25.92","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.25.705.23","versionStartIncluding":"5.25.705","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.25.713.12","versionStartIncluding":"5.25.713","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.25.724.8","versionStartIncluding":"5.25.724","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"5.25.736.3","versionStartIncluding":"5.25.736","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"7.0.78.171","versionStartIncluding":"7.0.78","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"7.8.23.95","versionStartIncluding":"7.8.23","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndExcluding":"7.8.586.21","versionStartIncluding":"7.8.586","vulnerable":true},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndIncluding":"5.25.*","versionStartIncluding":"5.25.738","vulnerable":false},{"criteria":"cpe:2.3:a:wso2:wso2_carbon_identity_application_authentication_framework:*:*:*:*:*:*:*:*","versionEndIncluding":"*","versionStartIncluding":"7.8.646","vulnerable":false}],"negate":false,"operator":"OR"}],"operator":"OR"}],"descriptions":[{"lang":"en","supportingMedia":[{"base64":false,"type":"text/html","value":"The Conditional Authentication (Adaptive Authentication) script does not correctly enforce the completion of all required authentication steps when a specific multi-step pattern involving certain authenticators is configured. This allows an attacker to bypass intermediate authentication challenges by exploiting how the script handles callbacks and re-execution of authentication steps.\n\nSuccessful exploitation allows a malicious actor to gain unauthorized access to a targeted user account. This vulnerability can only be exploited when all of the following conditions are met: the application login flow contains a specific secondary authenticator, the Conditional Authentication script is configured with particular event callbacks and re-executes an authentication step, the targeted user has one of the impacted authenticators enrolled, and the attacker successfully completes any preceding authentication steps."}],"value":"The Conditional Authentication (Adaptive Authentication) script does not correctly enforce the completion of all required authentication steps when a specific multi-step pattern involving certain authenticators is configured. This allows an attacker to bypass intermediate authentication challenges by exploiting how the script handles callbacks and re-execution of authentication steps.\n\nSuccessful exploitation allows a malicious actor to gain unauthorized access to a targeted user account. This vulnerability can only be exploited when all of the following conditions are met: the application login flow contains a specific secondary authenticator, the Conditional Authentication script is configured with particular event callbacks and re-executes an authentication step, the targeted user has one of the impacted authenticators enrolled, and the attacker successfully completes any preceding authentication steps."}],"impacts":[{"capecId":"CAPEC-134","descriptions":[{"lang":"en","value":"CAPEC-134 CAPEC-134: Circumventing Security Controls"}]}],"metrics":[{"cvssV3_1":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"LOW","baseScore":9.4,"baseSeverity":"CRITICAL","confidentialityImpact":"HIGH","integrityImpact":"HIGH","privilegesRequired":"NONE","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L","version":"3.1"},"format":"CVSS","scenarios":[{"lang":"en","value":"GENERAL"}]}],"problemTypes":[{"descriptions":[{"cweId":"CWE-693","description":"CWE-693: Protection Mechanism Failure","lang":"en","type":"CWE"}]}],"providerMetadata":{"dateUpdated":"2026-08-06T07:33:23.097Z","orgId":"ed10eef1-636d-4fbe-9993-6890dfa878f8","shortName":"WSO2"},"references":[{"tags":["vendor-advisory"],"url":"https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2025-4973/"}],"solutions":[{"lang":"en","supportingMedia":[{"base64":false,"type":"text/html","value":"<span style=\"background-color: transparent;\">Follow the instructions given on </span><a target=\"_blank\" rel=\"nofollow\" href=\"https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2025-4973/#solution\"><span style=\"background-color: transparent;\">https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2025-4973/#solution</span></a> <br>"}],"value":"Follow the instructions given on https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2025-4973/#solution"}],"source":{"advisory":"WSO2-2025-4973","discovery":"INTERNAL"},"title":"Account Takeover via Conditional Authentication Script Logic in Multiple WSO2 Products","x_generator":{"engine":"Vulnogram 0.2.0"}}},"cveMetadata":{"assignerOrgId":"ed10eef1-636d-4fbe-9993-6890dfa878f8","assignerShortName":"WSO2","cveId":"CVE-2025-15039","datePublished":"2026-08-06T07:33:23.097Z","dateReserved":"2025-12-23T08:27:22.275Z","dateUpdated":"2026-08-06T12:31:43.779Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2026-08-06 08:16:29","lastModifiedDate":"2026-08-12 19:32:37","problem_types":["CWE-693","CWE-693 CWE-693: Protection Mechanism Failure"],"metrics":{"cvssMetricV31":[{"source":"ed10eef1-636d-4fbe-9993-6890dfa878f8","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L","baseScore":9.4,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"LOW"},"exploitabilityScore":3.9,"impactScore":5.5}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2026-08-06T12:31:35.881685Z","id":"CVE-2025-15039","options":[{"exploitation":"none"},{"automatable":"yes"},{"technicalImpact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_control_plane:*:*:*:*:*:*:*:*","versionStartIncluding":"4.5.0","versionEndExcluding":"4.5.0.45","matchCriteriaId":"D995D5A2-BA46-4A37-A426-24FEBD31B347"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_control_plane:*:*:*:*:*:*:*:*","versionStartIncluding":"4.6.0","versionEndExcluding":"4.6.0.9","matchCriteriaId":"D67BE9A3-5C76-4852-8675-FFF32AD070AE"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"2.6.0","versionEndExcluding":"2.6.0.150","matchCriteriaId":"8A7BB442-F48D-4641-8B8C-62920136962A"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"3.0.0","versionEndExcluding":"3.0.0.180","matchCriteriaId":"7CC1A63A-04CC-4B33-B7D0-98F7A468ED20"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"3.1.0","versionEndExcluding":"3.1.0.356","matchCriteriaId":"779C4DD3-F4C1-4CAE-B7EE-F03A3131D594"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"3.2.0","versionEndExcluding":"3.2.0.460","matchCriteriaId":"CED55268-DFD9-4A80-8D1A-094122AFC508"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"3.2.1","versionEndExcluding":"3.2.1.79","matchCriteriaId":"F899F861-8F56-4167-8C77-5918A742C559"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"4.0.0","versionEndExcluding":"4.0.0.381","matchCriteriaId":"60C68B5F-2BD0-43A6-861F-577BD80F422F"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"4.1.0","versionEndExcluding":"4.1.0.244","matchCriteriaId":"06344918-D471-4245-B9FB-69825E99ABA0"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"4.2.0","versionEndExcluding":"4.2.0.184","matchCriteriaId":"905BF4EB-F2AD-4C98-B44B-05410C8C2C75"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"4.3.0","versionEndExcluding":"4.3.0.95","matchCriteriaId":"29179766-A9E7-4CFF-AF55-5300988D9483"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"4.4.0","versionEndExcluding":"4.4.0.59","matchCriteriaId":"04B57CE9-F224-416E-BB87-242AAA5AEE8B"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"4.5.0","versionEndExcluding":"4.5.0.44","matchCriteriaId":"2E407764-1241-4A14-9EC7-2ABC224EF841"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:api_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"4.6.0","versionEndExcluding":"4.6.0.8","matchCriteriaId":"B7E010B0-0929-40B7-8FC9-8E5B093AF2C7"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"5.7.0","versionEndExcluding":"5.7.0.130","matchCriteriaId":"5349A5C8-EA3F-4F3F-9A29-DC05D9B8BC00"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"5.8.0","versionEndExcluding":"5.8.0.133","matchCriteriaId":"885643C6-A2D5-413C-93F2-13D5CED1FBB1"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9.0","versionEndExcluding":"5.9.0.173","matchCriteriaId":"4904520D-3B34-458A-B992-DB3F05C4BDA6"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"5.10.0","versionEndExcluding":"5.10.0.385","matchCriteriaId":"5A789202-ADAA-4459-BBB4-0DF61B57E6A9"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"5.11.0","versionEndExcluding":"5.11.0.432","matchCriteriaId":"90B95E76-04B4-4625-B16B-3FD28632F9CC"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"6.0.0","versionEndExcluding":"6.0.0.259","matchCriteriaId":"BAFCB3EB-6778-4B30-B289-F78327917AA5"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"6.1.0","versionEndExcluding":"6.1.0.260","matchCriteriaId":"ACF5039C-DDBF-4026-9B9F-3EBDBEF5747E"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"7.0.0","versionEndExcluding":"7.0.0.138","matchCriteriaId":"BB4EADE0-4780-463B-A2DF-D7BD23605D75"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"7.1.0","versionEndExcluding":"7.1.0.49","matchCriteriaId":"92A043AF-9648-471E-8B6C-B28D67FACE92"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server:*:*:*:*:*:*:*:*","versionStartIncluding":"7.2.0","versionEndExcluding":"7.2.0.7","matchCriteriaId":"74774992-4FB3-482A-9F6C-DCED20B19B15"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server_as_key_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"5.7.0","versionEndExcluding":"5.7.0.129","matchCriteriaId":"898D7438-A637-4E37-96F2-7F72342391EC"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server_as_key_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"5.9.0","versionEndExcluding":"5.9.0.179","matchCriteriaId":"BE258A94-F8AC-43A9-A94D-1E397DA46417"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:identity_server_as_key_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"5.10.0","versionEndExcluding":"5.10.0.376","matchCriteriaId":"DF4C333C-084D-4F4A-A0DC-5F5E8BE6E530"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:open_banking_am:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.0","versionEndExcluding":"1.4.0.143","matchCriteriaId":"0E66821E-A871-461A-83F8-00B8C496846F"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:open_banking_am:*:*:*:*:*:*:*:*","versionStartIncluding":"1.5.0","versionEndExcluding":"1.5.0.144","matchCriteriaId":"B96B4DC1-A506-42B8-994C-B47EC30732A6"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:open_banking_am:*:*:*:*:*:*:*:*","versionStartIncluding":"2.0.0","versionEndExcluding":"2.0.0.405","matchCriteriaId":"0982A3BB-F361-4F00-BAB0-FCB30F7503C3"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:open_banking_iam:*:*:*:*:*:*:*:*","versionStartIncluding":"2.0.0","versionEndExcluding":"2.0.0.425","matchCriteriaId":"613006EB-89F7-4D12-8C42-BA917BB32CE8"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:open_banking_km:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.0","versionEndExcluding":"1.4.0.137","matchCriteriaId":"92B97896-B673-4240-85B3-0607E3EDF4C5"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:open_banking_km:*:*:*:*:*:*:*:*","versionStartIncluding":"1.5.0","versionEndExcluding":"1.5.0.127","matchCriteriaId":"F242F2C4-8284-454D-8E46-96501EEB6A9A"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:traffic_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"4.5.0","versionEndExcluding":"4.5.0.43","matchCriteriaId":"CF30B18A-4390-44B7-ADB7-A5C51D49E0A5"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:traffic_manager:*:*:*:*:*:*:*:*","versionStartIncluding":"4.6.0","versionEndExcluding":"4.6.0.8","matchCriteriaId":"241CBE20-9DC0-4286-8F19-9472C700023F"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:universal_gateway:*:*:*:*:*:*:*:*","versionStartIncluding":"4.5.0","versionEndExcluding":"4.5.0.44","matchCriteriaId":"C322AC69-86CB-4345-8493-84CA9754FADD"},{"vulnerable":true,"criteria":"cpe:2.3:a:wso2:universal_gateway:*:*:*:*:*:*:*:*","versionStartIncluding":"4.6.0","versionEndExcluding":"4.6.0.8","matchCriteriaId":"A8268BF1-DC35-49E8-823F-0C4CCC351EA6"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2025","CveId":"15039","Ordinal":"1","Title":"Account Takeover via Conditional Authentication Script Logic in ","CVE":"CVE-2025-15039","Year":"2025"},"notes":[{"CveYear":"2025","CveId":"15039","Ordinal":"1","NoteData":"The Conditional Authentication (Adaptive Authentication) script does not correctly enforce the completion of all required authentication steps when a specific multi-step pattern involving certain authenticators is configured. This allows an attacker to bypass intermediate authentication challenges by exploiting how the script handles callbacks and re-execution of authentication steps.\n\nSuccessful exploitation allows a malicious actor to gain unauthorized access to a targeted user account. This vulnerability can only be exploited when all of the following conditions are met: the application login flow contains a specific secondary authenticator, the Conditional Authentication script is configured with particular event callbacks and re-executes an authentication step, the targeted user has one of the impacted authenticators enrolled, and the attacker successfully completes any preceding authentication steps.","Type":"Description","Title":"Account Takeover via Conditional Authentication Script Logic in "}]}}}