Описание
The password-reset mechanism in the Forgot Password functionality in R-HUB TurboMeeting through 8.x allows unauthenticated remote attackers to force the application into resetting the administrator's password to a random insecure 8-digit value.
Ссылки
- Third Party Advisory
- Product
- Third Party Advisory
- Product
Уязвимые конфигурации
Конфигурация 1Версия до 8.0 (исключая)
cpe:2.3:a:rhubcom:turbomeeting:*:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.01136
Низкий
9.8 Critical
CVSS3
9.1 Critical
CVSS3
Дефекты
CWE-640
CWE-640
EPSS
Процентиль: 78%
0.01136
Низкий
9.8 Critical
CVSS3
9.1 Critical
CVSS3
Дефекты
CWE-640
CWE-640