CVE-2016-9479

7.5HIGH

The "lost password" functionality in b2evolution before 6.7.9 allows remote attackers to reset arbitrary user passwords via a crafted request.

게시됨: 12/2/2016업데이트됨: 4/12/2025

설명

The "lost password" functionality in b2evolution before 6.7.9 allows remote attackers to reset arbitrary user passwords via a crafted request.

AI 분석AI 기반

영향받는 제품

b2evolutionb2evolution

참조