CVE-2018-1000501
26.06.2018, 16:29
Instant Update CMS contains a Password Reset Vulnerability vulnerability in /iu-application/controllers/administration/auth.php that can result in Account Tackover. This attack appear to be exploitable via network connectivity. This vulnerability appears to have been fixed in v0.3.3.Enginsight
Vendor | Product | Version |
---|---|---|
instant-update | instant_update_cms | 𝑥 < 0.3.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References