gougucms v4.08.18 was discovered to contain a password...
High severity
Unreviewed
Published
Oct 27, 2023
to the GitHub Advisory Database
•
Updated Sep 12, 2024
Description
Published by the National Vulnerability Database
Oct 27, 2023
Published to the GitHub Advisory Database
Oct 27, 2023
Last updated
Sep 12, 2024
gougucms v4.08.18 was discovered to contain a password reset poisoning vulnerability which allows attackers to arbitrarily reset users' passwords via a crafted packet.
References