Логотип exploitDog
bind:CVE-2021-28293
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-28293

Количество 2

Количество 2

nvd логотип

CVE-2021-28293

почти 5 лет назад

Seceon aiSIEM before 6.3.2 (build 585) is prone to an unauthenticated account takeover vulnerability in the Forgot Password feature. The lack of correct configuration leads to recovery of the password reset link generated via the password reset functionality, and thus an unauthenticated attacker can set an arbitrary password for any user.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xqx5-9rjr-cjq9

почти 4 года назад

Seceon aiSIEM before 6.3.2 (build 585) is prone to an unauthenticated account takeover vulnerability in the Forgot Password feature. The lack of correct configuration leads to recovery of the password reset link generated via the password reset functionality, and thus an unauthenticated attacker can set an arbitrary password for any user.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-28293

Seceon aiSIEM before 6.3.2 (build 585) is prone to an unauthenticated account takeover vulnerability in the Forgot Password feature. The lack of correct configuration leads to recovery of the password reset link generated via the password reset functionality, and thus an unauthenticated attacker can set an arbitrary password for any user.

CVSS3: 9.8
2%
Низкий
почти 5 лет назад
github логотип
GHSA-xqx5-9rjr-cjq9

Seceon aiSIEM before 6.3.2 (build 585) is prone to an unauthenticated account takeover vulnerability in the Forgot Password feature. The lack of correct configuration leads to recovery of the password reset link generated via the password reset functionality, and thus an unauthenticated attacker can set an arbitrary password for any user.

CVSS3: 9.8
2%
Низкий
почти 4 года назад

Уязвимостей на страницу