CVE-2025-69246
Raytha CMS does not have any brute force protection mechanism implemented. It allows an attacker to send multiple automa
Raytha CMS does not have any brute force protection mechanism implemented. It allows an attacker to send multiple automated logon requests without triggering lockout, throttling, or step-up challenges. This issue was fixed in version 1.4.6.
CRITICAL · CVSS 9.8
EPSS 0.00062
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0