CVE-2025-29773

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 13, 2025
Updated: Apr 3, 2025
CWE ID 287

Summary

CVE-2025-29773 is a vulnerability affecting the open-source Froxlor server administration software. Prior to version 2.2.6, the software fails to prevent users from creating accounts with the same email address as existing ones. This issue can be exploited by authenticated users, leading to potential conflicts and security vulnerabilities. The email-based attack vector allows the creation of multiple accounts with the same email address, which can complicate account identification and increase the risk of unauthorized access. Version 2.2.6 offers a resolution to this vulnerability by addressing the issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share