CVE-2025-60954

Published
View on NVD ↗
CVSS v3
8.3
HIGH
CVSS v2
N/A
Affected
2
PROJECTS

Description

Microweber CMS 2.0 has Weak Password Requirements. The application does not enforce minimum password length or complexity during password resets. Users can set extremely weak passwords, including single-character passwords, which can lead to account compromise, including administrative accounts.

Drag and Drop Website Builder and CMS with E-commerce
GitHubGitHub
3.42K