Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-1000141

Опубликовано: 30 янв. 2018
Источник: nvd
CVSS3: 6.5
CVSS2: 6.4
EPSS Низкий

Описание

An issue was discovered in Mahara before 18.10.0. It mishandled user requests that could discontinue a user's ability to maintain their own account (changing username, changing primary email address, deleting account). The correct behavior was to either prompt them for their password and/or send a warning to their primary email address.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*
Версия до 18.10.0 (исключая)

EPSS

Процентиль: 43%
0.00207
Низкий

6.5 Medium

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-640

Связанные уязвимости

CVSS3: 6.5
debian
около 8 лет назад

An issue was discovered in Mahara before 18.10.0. It mishandled user r ...

CVSS3: 6.5
github
больше 3 лет назад

An issue was discovered in Mahara before 18.10.0. It mishandled user requests that could discontinue a user's ability to maintain their own account (changing username, changing primary email address, deleting account). The correct behavior was to either prompt them for their password and/or send a warning to their primary email address.

EPSS

Процентиль: 43%
0.00207
Низкий

6.5 Medium

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-640