ZeroHour

CVE-2021-23126

CVSS 3.1
5.3 medium
EPSS
1%p63
Published
()
Modified
Description

An issue was discovered in Joomla! 3.2.0 through 3.9.24. Usage of the insecure rand() function within the process of generating the 2FA secret.

Vendors
joomla
Products
joomla\!
Ecosystems
Joomla
Weakness
CWE-338
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.