CVE-2025-48045

Publication date

2025-05-29 12:29:33

Family

rapid7

State

PUBLISHED

Description

An unauthenticated HTTP GET request to the /client.php endpoint will disclose the default administrator user credentials.