Review reviewHigh
CVE-2025-28357
the affected product
A CRLF injection vulnerability in Neto CMS v6.313.0 through v6.314.0 allows attackers to execute arbitrary code via supplying a crafted HTTP request.
- CVSS
- 8.8
- EPSS
- 0.41% 34.0% percentile
- CISA KEV
- Not listed
- Published
- 2025.10.02