Lucene search

K
cvelistMitreCVELIST:CVE-2021-27583
HistoryFeb 23, 2021 - 6:54 p.m.

CVE-2021-27583

2021-02-2318:54:20
mitre
www.cve.org
1
directus 8.x
database presence
password reset
vulnerability
unsupported products.

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

47.4%

In Directus 8.x through 8.8.1, an attacker can discover whether a user is present in the database through the password reset feature. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

47.4%

Related for CVELIST:CVE-2021-27583