CVE-2025-44185: CSRF
SourceCodester Best Employee Management System V1.0 is vulnerable to Cross Site Request Forgery (CSRF) in /admin/changepass.php via the password parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-44185?
CVE-2025-44185 is classified as a medium severity vulnerability due to its potential for exploitation via Cross Site Request Forgery (CSRF).
How do I fix CVE-2025-44185?
To fix CVE-2025-44185, ensure to implement CSRF tokens for sensitive actions like changing passwords in the application.
What type of vulnerability is CVE-2025-44185?
CVE-2025-44185 is a Cross Site Request Forgery (CSRF) vulnerability affecting the password change functionality.
Which software is affected by CVE-2025-44185?
The affected software for CVE-2025-44185 is SourceCodester Best Employee Management System version 1.0.
What is the impact of CVE-2025-44185?
The impact of CVE-2025-44185 allows an attacker to change user passwords by exploiting CSRF, leading to unauthorized access.