CVE-2018-0696
13.02.2019, 18:29
OpenAM (Open Source Edition) 13.0 and later does not properly manage sessions, which allows remote authenticated attackers to change the security questions and reset the login password via unspecified vectors.Enginsight
| Vendor | Product | Version |
|---|---|---|
| osstech | openam | 13.0 ≤ 𝑥 ≤ 13.0.0-120 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration