CVE-2025-60954
24.10.2025, 21:16
Microweber CMS 2.0 has Weak Password Requirements. The application does not enforce minimum password length or complexity during password resets. Users can set extremely weak passwords, including single-character passwords, which can lead to account compromise, including administrative accounts.Enginsight
| Vendor | Product | Version |
|---|---|---|
| microweber | microweber | 2.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration