CVE-2025-48046

NONE

An authenticated user can disclose the cleartext password of a configured SMTP server via an HTTP GET request to the /config.php endpoint.

Published: 5/29/2025Updated: 9/5/2025

Description

An authenticated user can disclose the cleartext password of a configured SMTP server via an HTTP GET request to the /config.php endpoint.

AI AnalysisPowered by AI

References