CVE-2025-48046
NONEAn authenticated user can disclose the cleartext password of a configured SMTP server via an HTTP GET request to the /config.php endpoint.
Veröffentlicht: 5/29/2025Aktualisiert: 9/5/2025
Beschreibung
An authenticated user can disclose the cleartext password of a configured SMTP server via an HTTP GET request to the /config.php endpoint.