Логотип exploitDog
bind:CVE-2020-27422
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-27422

Количество 2

Количество 2

nvd логотип

CVE-2020-27422

около 5 лет назад

In Anuko Time Tracker v1.19.23.5311, the password reset link emailed to the user doesn't expire once used, allowing an attacker to use the same link to takeover the account.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-jvmc-9qmp-g6pw

больше 3 лет назад

In Anuko Time Tracker v1.19.23.5311, the password reset link emailed to the user doesn't expire once used, allowing an attacker to use the same link to takeover the account.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-27422

In Anuko Time Tracker v1.19.23.5311, the password reset link emailed to the user doesn't expire once used, allowing an attacker to use the same link to takeover the account.

CVSS3: 9.8
10%
Средний
около 5 лет назад
github логотип
GHSA-jvmc-9qmp-g6pw

In Anuko Time Tracker v1.19.23.5311, the password reset link emailed to the user doesn't expire once used, allowing an attacker to use the same link to takeover the account.

10%
Средний
больше 3 лет назад

Уязвимостей на страницу