VendorsDDSNcm3_acora_cmsall versions
Vulnerabilities

DDSN cm3 Acora CMS

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2025-63314
A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the user password and execute a full account takeover via a replay attack.
Published 2026-01-12 · Modified
10.0EPSS 0.003