Posted by Andrey Stoykov on Sep 22
# Exploit Title: Current Password not Required When Changing Password –
flatpressv1.4.1
# Date: 09/2025
# Exploit Author: Andrey Stoykov
# Version: 1.4.1
# Tested on: Debian 12
# Blog:
https://msecureltd.blogspot.com/2025/09/friday-fun-pentest-series-42-current.html
Current Password not Required When Changing Password:
Steps to Reproduce:
– Login with admin user and visit “Main” > “Configuration” > “General…
– Read More – Full Disclosure



