CVE-2025-47646

CRITICAL NUCLEI

Gilblas Ngunte Possi PSW Front-end Login & Registration <1.13 - Inf...

Title source: llm

Description

Weak Password Recovery Mechanism for Forgotten Password vulnerability in Gilblas Ngunte Possi PSW Front-end Login &amp; Registration psw-login-and-registration allows Password Recovery Exploitation.This issue affects PSW Front-end Login &amp; Registration: from n/a through <= 1.13.

Exploits (3)

nomisec WRITEUP 2 stars
by Nxploited · poc
https://github.com/Nxploited/CVE-2025-47646
github WORKING POC
by Boshe99 · pythonpoc
https://github.com/Boshe99/CVE-Exploits/tree/main/CVE-2025-47646
nomisec WORKING POC
by RootHarpy · poc
https://github.com/RootHarpy/CVE-2025-47646

Nuclei Templates (1)

PSW Front-end Login & Registration 1.13 - Weak Password Recovery
CRITICALby pussycat0x

Scores

CVSS v3 9.8
EPSS 0.0034
EPSS Percentile 56.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-640
Status published
Products (1)
Gilblas Ngunte Possi/PSW Front-end Login &amp; Registration < 1.13
Published May 23, 2025
Tracked Since Feb 18, 2026