CVE-2025-29773
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2025-29773 is a vulnerability affecting the open-source Froxlor server administration software. Prior to version 2.2.6, the software fails to prevent users from creating accounts with the same email address as existing ones. This issue can be exploited by authenticated users, leading to potential conflicts and security vulnerabilities. The email-based attack vector allows the creation of multiple accounts with the same email address, which can complicate account identification and increase the risk of unauthorized access. Version 2.2.6 offers a resolution to this vulnerability by addressing the issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Froxlor