Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c68v-2764-rf86

Опубликовано: 16 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.1
CVSS3: 2.7

Описание

A vulnerability was identified in vichan-devel vichan up to 5.1.5. This vulnerability affects unknown code of the file inc/mod/pages.php of the component Password Change Handler. The manipulation of the argument Password leads to unverified password change. The attack can be initiated remotely. The vendor was contacted early about this disclosure but did not respond in any way.

A vulnerability was identified in vichan-devel vichan up to 5.1.5. This vulnerability affects unknown code of the file inc/mod/pages.php of the component Password Change Handler. The manipulation of the argument Password leads to unverified password change. The attack can be initiated remotely. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 19%
0.00271
Низкий

5.1 Medium

CVSS4

2.7 Low

CVSS3

Дефекты

CWE-620

Связанные уязвимости

CVSS3: 2.7
nvd
4 месяца назад

A vulnerability was identified in vichan-devel vichan up to 5.1.5. This vulnerability affects unknown code of the file inc/mod/pages.php of the component Password Change Handler. The manipulation of the argument Password leads to unverified password change. The attack can be initiated remotely. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 19%
0.00271
Низкий

5.1 Medium

CVSS4

2.7 Low

CVSS3

Дефекты

CWE-620