CVE-2025-28091: SSRF
Published Mar 28, 2025
·Updated
maccms10 v2025.1000.4047 has a Server-Side Request Forgery (SSRF) vulnerability via Add Article.
Affected Software
2 affected components
maccms maccms10=v2025.1000.4047
maccms Maccms=10.0-2025.1000.4047
Event History
Mar 28, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-28091?
CVE-2025-28091 is classified as a medium severity vulnerability due to its potential for exploitation via Server-Side Request Forgery.
2
How do I fix CVE-2025-28091?
To fix CVE-2025-28091, update your system to the latest version of maccms10 that addresses this SSRF vulnerability.
3
What is the impact of CVE-2025-28091?
The impact of CVE-2025-28091 includes the ability for an attacker to make unauthorized requests to internal services.
4
Who is affected by CVE-2025-28091?
CVE-2025-28091 affects users of maccms10 version v2025.1000.4047.
5
How can CVE-2025-28091 be exploited?
CVE-2025-28091 can be exploited by sending crafted requests through the Add Article function to potentially access restricted resources.