GITHUBEXPLOIT 9.8 CRITICAL

Exploit for Missing Authentication for Critical Function in Frangoteam Fuxa_56876268-5FBE-5C5E-8C4B-970AAF8B6BBB

9.8 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

CVE-2026-25895 — FUXA for code execution within 60 seconds when FUXA runs as root the default in the vendor's Docker image - Install an HTTP webshell listener bound inside the FUXA Node process - Drop SSH public keys into /root/.ssh/authorizedkeys or...
Visit Original Source

Basic Information

ID 56876268-5FBE-5C5E-8C4B-970AAF8B6BBB
Published Apr 24, 2026 at 21:26
Modified Apr 24, 2026 at 21:30

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.