Server-Side Request Forgery Vulnerability in Maccms10 by Magicblack
CVE-2025-28089
9.1CRITICAL
What is CVE-2025-28089?
Maccms10 version 2025.1000.4047 contains a vulnerability that allows Server-Side Request Forgery (SSRF) through its Scheduled Task function. This flaw can be exploited by remote attackers to send unauthorized requests from the server, potentially accessing sensitive internal resources and thus leading to further exploitation or information leakage.
