ZeroHour

CVE-2021-41716

PoC
CVSS 3.1
9.8 critical
EPSS
1%p69
Published
()
Modified
Description

Maharashtra State Electricity Board Mahavitara Android Application 8.20 and prior is vulnerable to remote account takeover due to OTP fixation vulnerability in password rest function

Vendors
mahadiscom
Products
mahavitaran
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.