The cryptographically insecure random number generator being used in TravianZ 8.3.4 and 8.3.3 in the password reset function allows an attacker to guess the password reset.parameters and to take over accounts.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-07-07T00:00:00

Updated: 2024-08-02T17:01:10.152Z

Reserved: 2023-06-28T00:00:00

Link: CVE-2023-36993

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-07-07T19:15:09.827

Modified: 2023-07-13T19:30:27.737

Link: CVE-2023-36993

cve-icon Redhat

No data.