Description
The user-introduction email in MFScripts YetiShare v3.5.2 through v4.5.4 may leak the (system-picked) password if this email is sent in cleartext. In other words, the user is not allowed to choose their own initial password.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-10617 | The user-introduction email in MFScripts YetiShare v3.5.2 through v4.5.4 may leak the (system-picked) password if this email is sent in cleartext. In other words, the user is not allowed to choose their own initial password. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T02:32:10.507Z
Reserved: 2019-12-29T00:00:00.000Z
Link: CVE-2019-20061
No data.
Status : Modified
Published: 2020-02-10T13:15:11.893
Modified: 2024-11-21T04:37:59.613
Link: CVE-2019-20061
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD