Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-3905

Опубликовано: 22 дек. 2010
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

The password reset feature in the administrator interface for Eucalyptus 2.0.0 and 2.0.1 does not perform authentication, which allows remote attackers to gain privileges by sending password reset requests for other users.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:eucalyptus:eucalyptus:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:eucalyptus:eucalyptus:2.0.1:*:*:*:*:*:*:*

EPSS

Процентиль: 85%
0.02863
Низкий

7.5 High

CVSS2

Дефекты

CWE-287

Связанные уязвимости

ubuntu
больше 15 лет назад

The password reset feature in the administrator interface for Eucalyptus 2.0.0 and 2.0.1 does not perform authentication, which allows remote attackers to gain privileges by sending password reset requests for other users.

debian
больше 15 лет назад

The password reset feature in the administrator interface for Eucalypt ...

github
около 4 лет назад

The password reset feature in the administrator interface for Eucalyptus 2.0.0 and 2.0.1 does not perform authentication, which allows remote attackers to gain privileges by sending password reset requests for other users.

EPSS

Процентиль: 85%
0.02863
Низкий

7.5 High

CVSS2

Дефекты

CWE-287