Логотип exploitDog
bind:CVE-2009-1596
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-1596

Количество 2

Количество 2

nvd логотип

CVE-2009-1596

больше 16 лет назад

Ignite Realtime Openfire before 3.6.5 does not properly implement the register.password (aka canChangePassword) console configuration setting, which allows remote authenticated users to bypass intended policy and change their own passwords via a passwd_change IQ packet.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-h5m2-8pmw-gmg7

почти 4 года назад

Ignite Realtime Openfire before 3.6.5 does not properly implement the register.password (aka canChangePassword) console configuration setting, which allows remote authenticated users to bypass intended policy and change their own passwords via a passwd_change IQ packet.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2009-1596

Ignite Realtime Openfire before 3.6.5 does not properly implement the register.password (aka canChangePassword) console configuration setting, which allows remote authenticated users to bypass intended policy and change their own passwords via a passwd_change IQ packet.

CVSS3: 6.5
0%
Низкий
больше 16 лет назад
github логотип
GHSA-h5m2-8pmw-gmg7

Ignite Realtime Openfire before 3.6.5 does not properly implement the register.password (aka canChangePassword) console configuration setting, which allows remote authenticated users to bypass intended policy and change their own passwords via a passwd_change IQ packet.

CVSS3: 6.5
0%
Низкий
почти 4 года назад

Уязвимостей на страницу