CVE-2024-42165

6.3MEDIUM

Insufficiently random values for generating activation token in FIWARE Keyrock <= 8.4 allow attackers to activate accounts of any user by predicting the token for the activation link.

发布于: 8/12/2024更新于: 8/29/2024

描述

Insufficiently random values for generating activation token in FIWARE Keyrock <= 8.4 allow attackers to activate accounts of any user by predicting the token for the activation link.

AI分析AI驱动

受影响产品

fiwarekeyrock

参考资料