member.php in Crossday Discuz! Board allows remote attackers to reset passwords of arbitrary users via crafted (1) lostpasswd and (2) getpasswd actions, possibly involving predictable generation of the id parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2009-08-12T10:00:00

Updated: 2024-08-07T11:49:02.487Z

Reserved: 2009-08-11T00:00:00

Link: CVE-2008-6957

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2009-08-12T10:30:00.983

Modified: 2017-09-29T01:33:27.043

Link: CVE-2008-6957

cve-icon Redhat

No data.