CVE-2024-42163

8.3HIGH

Insufficiently random values for generating password reset token in FIWARE Keyrock <= 8.4 allow attackers to take over the account of any user by predicting the token for the password reset link.

Published: 8/12/2024Updated: 8/29/2024

Description

Insufficiently random values for generating password reset token in FIWARE Keyrock <= 8.4 allow attackers to take over the account of any user by predicting the token for the password reset link.

AI AnalysisPowered by AI

Affected Products

fiwarekeyrock

References