CNNVD-202508-2301 Information

CNNVD ID

CNNVD-202508-2301

CVE-2025-53522

  • CNNVD Published: 2025-08-20

Description (Chinese)

Movable Type是Movable Type公司的一个内容管理系统。 Movable Type存在安全漏洞,该漏洞源于使用低可信源,可能导致远程未经验证攻击者发送篡改的密码重置邮件。

Description (English)

Movable Type is a content management system for Movable Type. There is a security loophole in Movable Type, which stems from the use of low-trust sources, which could lead to remote unverified re-routing of messages without a password.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Movable Type

Published

2025-08-20

Last Modified

2026-02-24

References

https://movabletype.org/news/2025/08/mt-843-released.html https://jvn.jp/en/jp/JVN76729865/ https://nvd.nist.gov/vuln/detail/CVE-2025-53522

Patch

https://www.movabletype.com/

Share on: