CNNVD-202507-291 Information

CNNVD ID

CNNVD-202507-291

CVE-2025-49618

  • CNNVD Published: 2025-07-03

Description (Chinese)

Plesk Obsidian是瑞士Plesk公司的一款主机控制面板。 Plesk Obsidian 18.0.69版本存在安全漏洞,该漏洞源于未经验证的/login_up.php请求可能泄露AWS凭据。

Description (English)

Plesk Obsidian is a mainframe control panel of the Swiss company Plesk. There is a security loophole in Release 18.0.69 of Plesk Obsidian, which stems from unverified/login up.php requests for possible disclosure of AWS documents.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PlexTrac

Published

2025-07-03

Last Modified

2026-02-24

References

https://www.linkedin.com/posts/gaetano-cesano-976420200_qualche-giorno-fa-stavo-testando-plesk-obsidian-activity-7341794923198709761-by9G https://www.plesk.com/blog/plesk-news-announcements/plesk-obsidian-18-0-69-is-here/

Share on: