Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-84f2-hxx8-45mv

Опубликовано: 23 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

In motor-admin versions 0.0.1 through 0.2.56 are vulnerable to host header injection in the password reset functionality where malicious actor can send fake password reset email to arbitrary victim.

In motor-admin versions 0.0.1 through 0.2.56 are vulnerable to host header injection in the password reset functionality where malicious actor can send fake password reset email to arbitrary victim.

EPSS

Процентиль: 52%
0.00296
Низкий

8.8 High

CVSS3

Дефекты

CWE-116

Связанные уязвимости

nvd
больше 3 лет назад

In motor-admin versions 0.0.1 through 0.2.56 are vulnerable to host header injection in the password reset functionality where malicious actor can send fake password reset email to arbitrary victim.

EPSS

Процентиль: 52%
0.00296
Низкий

8.8 High

CVSS3

Дефекты

CWE-116