Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-5100

Опубликовано: 13 фев. 2017
Источник: debian

Описание

Froxlor before 0.9.35 uses the PHP rand function for random number generation, which makes it easier for remote attackers to guess the password reset token by predicting a value.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
froxloritppackage

Связанные уязвимости

CVSS3: 9.8
nvd
больше 9 лет назад

Froxlor before 0.9.35 uses the PHP rand function for random number generation, which makes it easier for remote attackers to guess the password reset token by predicting a value.

suse-cvrf
больше 5 лет назад

Security update for froxlor

CVSS3: 9.8
github
больше 4 лет назад

Froxlor guessable password reset token