CVE-2025-28089

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Mar 28, 2025
Updated: Apr 7, 2025
CWE ID 918

Summary

CVE-2025-28089 is a newly identified cybersecurity vulnerability affecting maccms10 v2025.1000.4047. Maliciously crafted Scheduled Task requests can lead to Server-Side Request Forgery (SSRF), allowing unauthorized access to internal resources and potentially executing arbitrary code on the affected server. This issue poses a significant risk to organizations running the maccms10 software and underscores the importance of applying security patches promptly to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share