Forwarded from National Cybersecurity Information Sharing and Analysis Center: Cybersecurity Alert NISAC-200-202511-00000114
[Content Description]
Researchers have discovered a vulnerability (CVE-2025-12868) in the Use of Client-Side Authentication (USA) vulnerability in Cybertutor New Site Server. An unauthenticated remote attacker could modify the front-end code to gain website administrator privileges. Please confirm and patch this vulnerability as soon as possible.
[Affected Platform]
New Site Server
[Recommended Actions]
The official patch has been released. Please contact the vendor for the update.
[References]
1. https://nvd.nist.gov/vuln/detail/CVE-2025-12868