ZeroHour

CVE-2000-1228

PoC ×2
CVSS 2.0
5.0 medium
EPSS
2%p84
Published
()
Modified
Description

Phorum 3.0.7 allows remote attackers to change the administrator password without authentication via an HTTP request for admin.php3 that sets step, option, confirm and newPssword variables.

Vendors
phorum
Products
phorum
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N

In the news

No ingested article mentions this CVE yet.