Vulnerabilities
CVE-2025-70758 - Apache Core PHP Admin Panel Authentication Bypass
CVE ID : CVE-2025-70758 Published : Feb. 3, 2026, 6:16 p.m. | 41 minutes ago Description : chetans9 core-php-admin-panel through commit a94a780d6 contains an authentication bypass vulnerability in includes/auth_validate.php. The application sends an HTTP redirect via header(Location:login.php) when a user is not authenticated but fails to call exit() afterward. This allows remote unauthenticated attackers to access protected pages.customer database. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE Details
CVE ID
Published
Feb. 3, 2026
Affected Product:
php
Impact:
authentication bypass