Description
In SapphireIMS 5.0, it is possible to take over an account by sending a request to the Save_Password form as shown in POC. Notice that we do not require a JSESSIONID in this request and can reset any user’s password by changing the username to that user and password to base64(desired password).
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-18250 | In SapphireIMS 5.0, it is possible to take over an account by sending a request to the Save_Password form as shown in POC. Notice that we do not require a JSESSIONID in this request and can reset any user’s password by changing the username to that user and password to base64(desired password). |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:33:05.666Z
Reserved: 2020-09-14T00:00:00.000Z
Link: CVE-2020-25566
No data.
Status : Modified
Published: 2021-08-11T21:15:08.213
Modified: 2024-11-21T05:18:08.410
Link: CVE-2020-25566
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD