Deserialization Vulnerability in b1gMail Admin Page by b1gMail
CVE-2025-1741
What is CVE-2025-1741?
A vulnerability identified in b1gMail versions up to 7.4.1-pl1 allows an attacker to exploit an unknown functionality within the Admin Page component, specifically involving the manipulation of the query/q argument. This can lead to deserialization vulnerabilities, making it possible for remote attackers to execute malicious payloads. It is crucial for users to upgrade to version 7.4.1-pl2, which addresses this security concern effectively. The b1gMail team has demonstrated their commitment to security by also incorporating a fix in the discontinued commercial release of b1gMail. Keep your software updated to mitigate risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
b1gMail 7.4.1-pl1
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
