VYPR
Critical severity9.8NVD Advisory· Published May 12, 2025· Updated Apr 15, 2026

CVE-2025-4558

CVE-2025-4558

Description

The GPM from WormHole Tech has an Unverified Password Change vulnerability, allowing unauthenticated remote attackers to change any user's password and use the modified password to log into the system.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.