PT-2025-40538 · Unknown · Directadmin

Scott Sturrock

+1

·

Published

2025-10-03

·

Updated

2025-10-03

·

CVE-2025-56551

CVSS v3.1

8.2

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
Name of the Vulnerable Software and Affected Versions DirectAdmin version 1.680
Description An issue allows unauthorized attackers to manipulate the page layout and replace the legitimate login interface with arbitrary attacker-controlled content. This is achieved by submitting a crafted GET request.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2025-56551

Affected Products

Directadmin