Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6grm-385j-c2m8

Опубликовано: 25 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A SQL injection vulnerability exists in Rocket.Chat <v3.18.6, <v4.4.4 and <v4.7.3 which can allow an attacker to retrieve a reset password token through or a 2fa secret.

A SQL injection vulnerability exists in Rocket.Chat <v3.18.6, <v4.4.4 and <v4.7.3 which can allow an attacker to retrieve a reset password token through or a 2fa secret.

EPSS

Процентиль: 69%
0.00605
Низкий

8.8 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 8.8
nvd
больше 3 лет назад

A SQL injection vulnerability exists in Rocket.Chat <v3.18.6, <v4.4.4 and <v4.7.3 which can allow an attacker to retrieve a reset password token through or a 2fa secret.

EPSS

Процентиль: 69%
0.00605
Низкий

8.8 High

CVSS3

Дефекты

CWE-89