Количество 2
Количество 2
CVE-2024-28270
почти 2 года назад
An issue discovered in web-flash v3.0 allows attackers to reset passwords for arbitrary users via crafted POST request to /prod-api/user/resetPassword.
CVSS3: 8.1
EPSS: Низкий
GHSA-6c3g-5c2q-h98q
почти 2 года назад
An issue discovered in web-flash v3.0 allows attackers to reset passwords for arbitrary users via crafted POST request to /prod-api/user/resetPassword.
CVSS3: 8.1
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-28270 An issue discovered in web-flash v3.0 allows attackers to reset passwords for arbitrary users via crafted POST request to /prod-api/user/resetPassword. | CVSS3: 8.1 | 0% Низкий | почти 2 года назад | |
GHSA-6c3g-5c2q-h98q An issue discovered in web-flash v3.0 allows attackers to reset passwords for arbitrary users via crafted POST request to /prod-api/user/resetPassword. | CVSS3: 8.1 | 0% Низкий | почти 2 года назад |
Уязвимостей на страницу
20