CVE-2025-49618
03.07.2025, 13:15
In Plesk Obsidian 18.0.69, unauthenticated requests to /login_up.php can reveal an AWS accessKeyId, secretAccessKey, region, and endpoint.
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration