In motor-admin versions 0.0.1 through 0.2.56 are vulnerable to host header injection in the password reset functionality where malicious actor can send fake password reset email to arbitrary victim.
History

Tue, 17 Sep 2024 00:00:00 +0000

Type Values Removed Values Added
Title motoradmin - host header Injection in the reset password functionality motoradmin - host header Injection in the reset password functionality

cve-icon MITRE

Status: PUBLISHED

Assigner: Mend

Published: 2022-06-22T13:05:10.447280Z

Updated: 2024-09-16T23:52:11.614Z

Reserved: 2022-01-10T00:00:00

Link: CVE-2022-23079

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-06-22T13:15:08.027

Modified: 2023-11-07T03:44:03.800

Link: CVE-2022-23079

cve-icon Redhat

No data.