CVE-2025-12310 | VirtFusion up to 6.0.2 Email Change /account/_settings excessive authentication
A vulnerability, which was classified as problematic, has been found in VirtFusion up to 6.0.2. This vulnerability affects unknown code of the file /account/_settings of the component Email Change Handler. The manipulation leads to improper restriction of excessive authentication attempts.
This vulnerability is documented as CVE-2025-12310. The attack can be initiated remotely. Additionally, an exploit exists.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More