CVE-2025-47646

CRITICAL NUCLEI

Gilblas Ngunte Possi PSW Front-end Login & Registration <1.13 - Inf...

Title source: llm

Description

Weak Password Recovery Mechanism for Forgotten Password vulnerability in Gilblas Ngunte Possi PSW Front-end Login &amp; Registration allows Password Recovery Exploitation. This issue affects PSW Front-end Login &amp; Registration: from n/a through 1.13.

Exploits (3)

nomisec WRITEUP 2 stars
by Nxploited · poc
https://github.com/Nxploited/CVE-2025-47646
github WORKING POC
by Boshe99 · pythonpoc
https://github.com/Boshe99/CVE-Exploits/tree/main/CVE-2025-47646
nomisec WORKING POC
by RootHarpy · poc
https://github.com/RootHarpy/CVE-2025-47646

Nuclei Templates (1)

PSW Front-end Login & Registration 1.13 - Weak Password Recovery
CRITICALby pussycat0x

Scores

CVSS v3 9.8
EPSS 0.0546
EPSS Percentile 90.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-640
Status draft

Timeline

Published May 23, 2025
Tracked Since Feb 18, 2026