Количество 4
Количество 4
CVE-2013-4962
The reset password page in Puppet Enterprise before 3.0.1 does not force entry of the current password, which allows attackers to modify user passwords by leveraging session hijacking, an unattended workstation, or other vectors.
CVE-2013-4962
The reset password page in Puppet Enterprise before 3.0.1 does not force entry of the current password, which allows attackers to modify user passwords by leveraging session hijacking, an unattended workstation, or other vectors.
CVE-2013-4962
The reset password page in Puppet Enterprise before 3.0.1 does not for ...
GHSA-g2xg-vq5p-8wvv
The reset password page in Puppet Enterprise before 3.0.1 does not force entry of the current password, which allows attackers to modify user passwords by leveraging session hijacking, an unattended workstation, or other vectors.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2013-4962 The reset password page in Puppet Enterprise before 3.0.1 does not force entry of the current password, which allows attackers to modify user passwords by leveraging session hijacking, an unattended workstation, or other vectors. | CVSS2: 5.8 | 0% Низкий | больше 12 лет назад | |
CVE-2013-4962 The reset password page in Puppet Enterprise before 3.0.1 does not force entry of the current password, which allows attackers to modify user passwords by leveraging session hijacking, an unattended workstation, or other vectors. | CVSS2: 5.8 | 0% Низкий | больше 12 лет назад | |
CVE-2013-4962 The reset password page in Puppet Enterprise before 3.0.1 does not for ... | CVSS2: 5.8 | 0% Низкий | больше 12 лет назад | |
GHSA-g2xg-vq5p-8wvv The reset password page in Puppet Enterprise before 3.0.1 does not force entry of the current password, which allows attackers to modify user passwords by leveraging session hijacking, an unattended workstation, or other vectors. | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу