Server-Side Request Forgery Vulnerability in Emlog Pro by Emlog
CVE-2025-25827
6.8MEDIUM
What is CVE-2025-25827?
A vulnerability in Emlog Pro v2.5.4 enables attackers to execute Server-Side Request Forgery (SSRF) attacks by sending specially crafted URLs. This exploit allows unauthenticated users to probe local and internal ports, potentially leading to unauthorized access to sensitive information. Users of Emlog Pro are recommended to apply patches and follow best security practices to mitigate the risk associated with this vulnerability.
References
CVSS V3.1
Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved