Логотип exploitDog
bind:CVE-2008-6524
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2008-6524

Количество 2

Количество 2

nvd логотип

CVE-2008-6524

почти 17 лет назад

resetpass.php in openInvoice 0.90 beta and earlier allows remote authenticated users to change the passwords of arbitrary users via a modified uid parameter. NOTE: this can be leveraged with a separate vulnerability in auth.php to modify passwords without authentication.

CVSS2: 6.5
EPSS: Низкий
github логотип

GHSA-jjjm-vgrm-72p6

больше 3 лет назад

resetpass.php in openInvoice 0.90 beta and earlier allows remote authenticated users to change the passwords of arbitrary users via a modified uid parameter. NOTE: this can be leveraged with a separate vulnerability in auth.php to modify passwords without authentication.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2008-6524

resetpass.php in openInvoice 0.90 beta and earlier allows remote authenticated users to change the passwords of arbitrary users via a modified uid parameter. NOTE: this can be leveraged with a separate vulnerability in auth.php to modify passwords without authentication.

CVSS2: 6.5
3%
Низкий
почти 17 лет назад
github логотип
GHSA-jjjm-vgrm-72p6

resetpass.php in openInvoice 0.90 beta and earlier allows remote authenticated users to change the passwords of arbitrary users via a modified uid parameter. NOTE: this can be leveraged with a separate vulnerability in auth.php to modify passwords without authentication.

3%
Низкий
больше 3 лет назад

Уязвимостей на страницу