5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was detected in code-projects Blog Site 1.0. The affected element is an unknown function of the file /admin.php. Performing manipulation results in improper authorization. It is possible to initiate the attack remotely. The exploit is now public and may be used. Multiple endpoints are affected.
Basic Information
ID
CVE-2025-13576
Source
VulDB
Published
Nov 24, 2025 at 01:02
Affected Product
Vendor
code-projects
Product
Blog Site
Version
1.0
Affected Versions
code-projects Blog Site 1.0