atjiu pybbs Verification Code login Captcha
Vulnerability Description
A vulnerability, which was classified as problematic, was found in atjiu pybbs up to 6.0.0. This affects the function adminlogin/login of the component Verification Code Handler. The manipulation leads to guessable captcha. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The patch is named ecaf8d46944fd03e3c4ea05698f8acf0aaa570cf. It is recommended to apply a patch to fix this issue.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-8546
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- ZAST.AI (VulDB User)
References
- https://vuldb.com/?id.318675
- https://vuldb.com/?ctiid.318675
- https://vuldb.com/?submit.622179
- https://github.com/atjiu/pybbs/issues/199
- https://github.com/atjiu/pybbs/issues/199#issuecomment-3134573731
- https://github.com/atjiu/pybbs/issues/199#issue-3256276118
- https://github.com/atjiu/pybbs/commit/ecaf8d46944fd03e3c4ea05698f8acf0aaa570cf
More from atjiu
View All →Affected Vendor
atjiu
View all reports →