Description
OpenSIS Community Edition through 7.6 is affected by incorrect access controls for the file ResetUserInfo.php that allow an unauthenticated attacker to change the password of arbitrary users.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-19919 | OpenSIS Community Edition through 7.6 is affected by incorrect access controls for the file ResetUserInfo.php that allow an unauthenticated attacker to change the password of arbitrary users. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T16:18:43.459Z
Reserved: 2020-10-21T00:00:00.000Z
Link: CVE-2020-27408
No data.
Status : Modified
Published: 2020-12-04T16:15:10.983
Modified: 2024-11-21T05:21:11.217
Link: CVE-2020-27408
No data.
OpenCVE Enrichment
No data.
EUVD