Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-42mc-fjx6-gh46

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

changepassword.php in Phlatline's Personal Information Manager (pPIM) 1.0 and earlier does not require administrative authentication, which allows remote attackers to change arbitrary passwords.

changepassword.php in Phlatline's Personal Information Manager (pPIM) 1.0 and earlier does not require administrative authentication, which allows remote attackers to change arbitrary passwords.

EPSS

Процентиль: 91%
0.06074
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 17 лет назад

changepassword.php in Phlatline's Personal Information Manager (pPIM) 1.0 and earlier does not require administrative authentication, which allows remote attackers to change arbitrary passwords.

EPSS

Процентиль: 91%
0.06074
Низкий

Дефекты

CWE-287