Unrated severityNVD Advisory· Published Oct 24, 2025· Updated Oct 24, 2025
CVE-2025-60954
CVE-2025-60954
Description
Microweber CMS 2.0 has Weak Password Requirements. The application does not enforce minimum password length or complexity during password resets. Users can set extremely weak passwords, including single-character passwords, which can lead to account compromise, including administrative accounts.
Affected products
2- Microweber/CMSdescription
- Range: = 2.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.