Логотип exploitDog
bind:CVE-2006-5474
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2006-5474

Количество 2

Количество 2

nvd логотип

CVE-2006-5474

больше 19 лет назад

The "forgot password" function in OneOrZero Helpdesk before 1.6.5.4 generates insecure passwords by concatenating the current timestamp with the username, which allows remote attackers to gain access as an arbitrary user by requesting a password reset.

CVSS2: 7.5
EPSS: Низкий
github логотип

GHSA-325q-4hqr-fh84

почти 4 года назад

The "forgot password" function in OneOrZero Helpdesk before 1.6.5.4 generates insecure passwords by concatenating the current timestamp with the username, which allows remote attackers to gain access as an arbitrary user by requesting a password reset.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2006-5474

The "forgot password" function in OneOrZero Helpdesk before 1.6.5.4 generates insecure passwords by concatenating the current timestamp with the username, which allows remote attackers to gain access as an arbitrary user by requesting a password reset.

CVSS2: 7.5
1%
Низкий
больше 19 лет назад
github логотип
GHSA-325q-4hqr-fh84

The "forgot password" function in OneOrZero Helpdesk before 1.6.5.4 generates insecure passwords by concatenating the current timestamp with the username, which allows remote attackers to gain access as an arbitrary user by requesting a password reset.

1%
Низкий
почти 4 года назад

Уязвимостей на страницу