CVE-2025-50433

Severity CVSS v4.0:
Pending analysis
Type:
CWE-640 Weak Password Recovery Mechanism for Forgotten Password
Publication date:
26/11/2025
Last modified:
29/12/2025

Description

An issue was discovered in imonnit.com (2025-04-24) allowing malicious actors to gain escalated privileges via crafted password reset to take over arbitrary user accounts.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:monnit:imonnit:-:*:*:*:cloud_basic:*:*:*
cpe:2.3:a:monnit:imonnit:-:*:*:*:cloud_premiere:*:*:*