cve/2025/CVE-2025-48046.md
2025-09-29 21:09:30 +02:00

662 B

CVE-2025-48046

Description

An authenticated user can disclose the cleartext password of a configured SMTP server via an HTTP GET request to the /config.php endpoint.

POC

Reference

No PoCs from references.

Github