Vulnerabilities (CVE)

Filtered by vendor Ddsn Subscribe
Filtered by product Cm3 Acora Cms
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-63314 1 Ddsn 1 Cm3 Acora Cms 2026-01-22 N/A 10.0 CRITICAL
A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the user password and execute a full account takeover via a replay attack.