Email Address Conflict Vulnerability in Froxlor Server Administration Software
CVE-2025-29773
7.8HIGH
What is CVE-2025-29773?
Froxlor, an open-source server administration software, has a vulnerability that allows authenticated users, such as resellers or customers, to create multiple accounts using the same email address already linked to an existing account. This could lead to significant issues with account identification and potential security risks. The system does not enforce unique email addresses for account registrations, making it vulnerable to exploitation. Users are advised to upgrade to version 2.2.6 or later to mitigate this issue.
Affected Version(s)
Froxlor < 2.2.6
