Impact
The vulnerability is caused by a weak password recovery mechanism in Ankaref's LIBRID/LIBREF, which allows attackers to exploit the password reset functionality and recover lost user credentials. This flaw is categorized under CWE‑640 and permits unauthorized account takeover by resetting passwords without adequate authentication checks. An attacker who successfully triggers the recovery can access any user account, potentially exposing sensitive data, escalating privileges, or compromising the entire system.
Affected Systems
The affected product is Ankaref Innovation and Technology Inc.’s LIBRID/LIBREF. Versions from 2.01.0.2183 up to (but not including) 18.9.26.2319 are vulnerable.
Risk and Exploitability
The CVSS score is 7.5, reflecting a high potential impact. The EPSS score is < 1%, indicating a very low but non‑zero exploitation probability. The issue is not currently listed in the CISA KEV catalog. The likely attack vector is remote via the web interface’s password recovery feature, which an attacker can target after determining a username or email address. Given the lack of mitigation in the source code, exploitation is reasonably straightforward for an individual with information about a target account.
OpenCVE Enrichment