Vulnerability Description
An issue in DirectAdmin v1.680 allows unauthorized attackers to manipulate the page layout and replace the legitimate login interface with arbitrary attacker-controlled content via supplying a crafted GET request.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Directadmin | Directadmin | 1.680 |
Related Weaknesses (CWE)
References
- https://cxsecurity.com/issue/WLB-2025100001ExploitThird Party Advisory
- https://i.imgur.com/4HF0cnP.pngProduct
- https://i.imgur.com/qA6SAXO.pngProduct
FAQ
What is CVE-2025-56551?
CVE-2025-56551 is a vulnerability with a CVSS score of 8.2 (HIGH). An issue in DirectAdmin v1.680 allows unauthorized attackers to manipulate the page layout and replace the legitimate login interface with arbitrary attacker-controlled content via supplying a crafted...
How severe is CVE-2025-56551?
CVE-2025-56551 has been rated HIGH with a CVSS base score of 8.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-56551?
Check the references section above for vendor advisories and patch information. Affected products include: Directadmin Directadmin.