Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8vfc-hp8c-35rf

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The "change password forms" in Taskjitsu before 2.0.1 includes password hashes in hidden form fields, which allows remote attackers to obtain sensitive information from the (1) Category Editor and (2) User Information editor.

The "change password forms" in Taskjitsu before 2.0.1 includes password hashes in hidden form fields, which allows remote attackers to obtain sensitive information from the (1) Category Editor and (2) User Information editor.

EPSS

Процентиль: 60%
0.00391
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

The "change password forms" in Taskjitsu before 2.0.1 includes password hashes in hidden form fields, which allows remote attackers to obtain sensitive information from the (1) Category Editor and (2) User Information editor.

EPSS

Процентиль: 60%
0.00391
Низкий