The Forgot Password implementation in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance allows remote attackers to reset passwords of accounts with blank Hint questions and Hint answers by sending an empty value for each of these two Hint fields.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2010-05-11T23:00:00
Updated: 2024-08-07T02:17:12.411Z
Reserved: 2010-05-11T00:00:00
Link: CVE-2010-1910
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-05-12T11:46:31.703
Modified: 2024-11-21T01:15:26.747
Link: CVE-2010-1910
Redhat
No data.