CVE-2020-27408
04.12.2020, 16:15
OpenSIS Community Edition through 7.6 is affected by incorrect access controls for the file ResetUserInfo.php that allow an unauthenticated attacker to change the password of arbitrary users.Enginsight
Vendor | Product | Version |
---|---|---|
os4ed | opensis | 𝑥 ≤ 7.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration