Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mjmw-3m65-4c84

Опубликовано: 11 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Improper password reset in PAM Module in Devolutions Server 2024.3.10.0 and earlier allows an authenticated user to reuse the oracle user password after check-in due to crash in the password reset functionality.

Improper password reset in PAM Module in Devolutions Server 2024.3.10.0 and earlier allows an authenticated user to reuse the oracle user password after check-in due to crash in the password reset functionality.

EPSS

Процентиль: 27%
0.00096
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-287
CWE-640

Связанные уязвимости

CVSS3: 5.4
nvd
12 месяцев назад

Improper password reset in PAM Module in Devolutions Server 2024.3.10.0 and earlier allows an authenticated user to reuse the oracle user password after check-in due to crash in the password reset functionality.

EPSS

Процентиль: 27%
0.00096
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-287
CWE-640