Логотип exploitDog
bind:CVE-2015-2286
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-2286

Количество 2

Количество 2

nvd логотип

CVE-2015-2286

почти 10 лет назад

lms/templates/footer-edx-new.html in Open edX edx-platform before 2015-01-29 does not properly restrict links on the password-reset page, which allows user-assisted remote attackers to discover password-reset tokens by reading a referer log after a victim navigates from this page to a social-sharing site.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-fgmr-7xcr-rjr8

больше 3 лет назад

lms/templates/footer-edx-new.html in Open edX edx-platform before 2015-01-29 does not properly restrict links on the password-reset page, which allows user-assisted remote attackers to discover password-reset tokens by reading a referer log after a victim navigates from this page to a social-sharing site.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2015-2286

lms/templates/footer-edx-new.html in Open edX edx-platform before 2015-01-29 does not properly restrict links on the password-reset page, which allows user-assisted remote attackers to discover password-reset tokens by reading a referer log after a victim navigates from this page to a social-sharing site.

CVSS3: 6.5
0%
Низкий
почти 10 лет назад
github логотип
GHSA-fgmr-7xcr-rjr8

lms/templates/footer-edx-new.html in Open edX edx-platform before 2015-01-29 does not properly restrict links on the password-reset page, which allows user-assisted remote attackers to discover password-reset tokens by reading a referer log after a victim navigates from this page to a social-sharing site.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу