CVE-2025-60954
EUVD-2025-3588824.10.2025, 21:16
Microweber CMS 2.0 has Weak Password Requirements. The application does not enforce minimum password length or complexity during password resets. Users can set extremely weak passwords, including single-character passwords, which can lead to account compromise, including administrative accounts.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microweber | microweber | 2.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration