Email Address Conflict Vulnerability in Froxlor Server Administration Software
CVE-2025-29773
7.8HIGH
What is CVE-2025-29773?
Froxlor, an open-source server administration software, has a vulnerability that allows authenticated users, such as resellers or customers, to create multiple accounts using the same email address already linked to an existing account. This could lead to significant issues with account identification and potential security risks. The system does not enforce unique email addresses for account registrations, making it vulnerable to exploitation. Users are advised to upgrade to version 2.2.6 or later to mitigate this issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Froxlor < 2.2.6
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
