CVE-2025-62586: OPEXUS FOIAXpress unauthenticated administrator password reset
Published Oct 16, 2025
·Updated
OPEXUS FOIAXpress allows a remote, unauthenticated attacker to reset the administrator password. Fixed in FOIAXpress version 11.13.2.0.
Affected Software
2 affected components
OPEXUS FOIAXpress<11.13.2.0
Opexustech Foiaxpress>=11.1.0<11.13.2.0
Event History
Oct 16, 2025
CVE Published
via MITRE·05:20 PM
Data Sourced
via MITRE·05:20 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-62586?
CVE-2025-62586 is classified as a critical vulnerability due to its potential for remote, unauthenticated access to reset the administrator password.
2
How do I fix CVE-2025-62586?
To fix CVE-2025-62586, upgrade OPEXUS FOIAXpress to version 11.13.2.0 or later.
3
Who is affected by CVE-2025-62586?
Any user running versions of OPEXUS FOIAXpress prior to 11.13.2.0 is affected by CVE-2025-62586.
4
What type of attack does CVE-2025-62586 enable?
CVE-2025-62586 enables a remote, unauthenticated attacker to reset the administrator password.
5
When was CVE-2025-62586 published?
CVE-2025-62586 was published in 2025, indicating a significant security vulnerability for OPEXUS FOIAXpress.