Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4x8w-5x74-c8v5

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

actions.php in WebPortal CMS 0.6-beta generates predictable passwords containing only the time of day, which makes it easier for remote attackers to obtain access to any account via a lostpass action.

actions.php in WebPortal CMS 0.6-beta generates predictable passwords containing only the time of day, which makes it easier for remote attackers to obtain access to any account via a lostpass action.

EPSS

Процентиль: 90%
0.0588
Низкий

7.5 High

CVSS3

Дефекты

CWE-330

Связанные уязвимости

CVSS3: 7.5
nvd
около 18 лет назад

actions.php in WebPortal CMS 0.6-beta generates predictable passwords containing only the time of day, which makes it easier for remote attackers to obtain access to any account via a lostpass action.

EPSS

Процентиль: 90%
0.0588
Низкий

7.5 High

CVSS3

Дефекты

CWE-330