Описание
Froxlor guessable password reset token
Froxlor before 0.9.35 uses the PHP rand function for random number generation, which makes it easier for remote attackers to guess the password reset token by predicting a value.
Пакеты
Наименование
froxlor/froxlor
composer
Затронутые версииВерсия исправления
< 0.9.35
0.9.35
Связанные уязвимости
CVSS3: 9.8
nvd
почти 9 лет назад
Froxlor before 0.9.35 uses the PHP rand function for random number generation, which makes it easier for remote attackers to guess the password reset token by predicting a value.
CVSS3: 9.8
debian
почти 9 лет назад
Froxlor before 0.9.35 uses the PHP rand function for random number gen ...