CVE-2025-12868
Severity CVSS v4.0:
CRITICAL
Type:
Unavailable / Other
Publication date:
10/11/2025
Last modified:
12/11/2025
Description
New Site Server developed by CyberTutor has a Use of Client-Side Authentication vulnerability, allowing unauthenticated remote attackers to modify the frontend code to gain administrator privileges on the website.
Impact
Base Score 4.0
9.30
Severity 4.0
CRITICAL
Base Score 3.x
9.80
Severity 3.x
CRITICAL



