Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7c2m-f7cw-58xj

Опубликовано: 11 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

A vulnerability has been identified in Mendix Forgot Password (Mendix 7 compatible) (All versions < V3.7.1), Mendix Forgot Password (Mendix 8 compatible) (All versions < V4.1.1), Mendix Forgot Password (Mendix 9 compatible) (All versions < V5.1.1). The affected versions of the module contain an observable response discrepancy issue that could allow an attacker to retrieve sensitive information.

A vulnerability has been identified in Mendix Forgot Password (Mendix 7 compatible) (All versions < V3.7.1), Mendix Forgot Password (Mendix 8 compatible) (All versions < V4.1.1), Mendix Forgot Password (Mendix 9 compatible) (All versions < V5.1.1). The affected versions of the module contain an observable response discrepancy issue that could allow an attacker to retrieve sensitive information.

EPSS

Процентиль: 51%
0.00275
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-203
CWE-204

Связанные уязвимости

CVSS3: 5.3
nvd
почти 3 года назад

A vulnerability has been identified in Mendix Forgot Password (Mendix 7 compatible) (All versions < V3.7.1), Mendix Forgot Password (Mendix 8 compatible) (All versions < V4.1.1), Mendix Forgot Password (Mendix 9 compatible) (All versions < V5.1.1). The affected versions of the module contain an observable response discrepancy issue that could allow an attacker to retrieve sensitive information.

EPSS

Процентиль: 51%
0.00275
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-203
CWE-204