CVE-2025-28089: SSRF
maccms10 v2025.1000.4047 is vulnerable to Server-Side Request Forgery (SSRF) via the Scheduled Task function.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-28089?
CVE-2025-28089 is rated as a critical vulnerability due to its potential for exploitation through Server-Side Request Forgery.
How do I fix CVE-2025-28089?
To fix CVE-2025-28089, update maccms10 to a version that addresses this vulnerability as specified in the official vendor release notes.
What does CVE-2025-28089 affect?
CVE-2025-28089 affects maccms10 version v2025.1000.4047, allowing unauthenticated users to exploit the Server-Side Request Forgery vulnerability.
Can CVE-2025-28089 lead to further attacks?
Yes, CVE-2025-28089 can potentially lead to data exfiltration and other attacks if successfully exploited.
Is there a known exploit for CVE-2025-28089?
As of now, specific exploit details for CVE-2025-28089 have not been publicly disclosed, but it is considered highly likely that one could be developed.