Lucene search

K
huntrLujiefsiC8C400F3-CAFB-4AAB-9A04-F8A84A794C71
HistoryApr 02, 2023 - 3:09 a.m.

Weak Password Implimentation

2023-04-0203:09:02
lujiefsi
www.huntr.dev
6
weak password
change process
security vulnerability

EPSS

0.04

Percentile

92.1%

Description:

We can change the password with just 1 character when we use change password function.

Proof of Concept

When you change password, just press any character and then submit. You will see “Your password has been changed”.

EPSS

0.04

Percentile

92.1%

Related for C8C400F3-CAFB-4AAB-9A04-F8A84A794C71