W eladmin w wersji 2.7 i wcześniejszych odkryto podatność pozwalającą na arbitralny reset hasła dowolnego użytkownika niezależnie od poziomu uprawnień.
▸ Pokaż oryginał (EN)
A vulnerability has been discovered in eladmin v2.7 and before. This vulnerability allows for an arbitrary user password reset under any user permission level.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:NEladmin
APPEladmin≤ 2.7
Powiązane podatności
CSV Injection w module pobierania logów wyjątków — Eladmin
SSRF umożliwiające RCE w Eladmin v2.7 — komponent DatabaseController
The eladmin v2.7 and before contains a remote code execution (RCE) vulnerability that can control all applicat...
A vulnerability was identified in elunez eladmin up to 2.7. Affected by this vulnerability is the function Enc...
A vulnerability, which was classified as problematic, has been found in elunez eladmin up to 2.7. Affected by ...