CVE-2025-12868: Cybertutor New Site Server
Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.
New Site Server developed by CyberTutor has a Use of Client-Side Authentication vulnerability, allowing unauthenticated remote attackers to modify the frontend code to gain administrator privileges on the website.
Affected products
- Cybertutor New Site Server: version 0 only
Published 2025-11-10. Last modified 2026-06-17.