Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-14837
HistoryJan 07, 2020 - 5:15 p.m.

Design/Logic Flaw

2020-01-0717:15:00
PRIOn knowledge base
www.prio-n.com
7

AI Score

9.1

Confidence

High

EPSS

0.002

Percentile

61.9%

A flaw was found in keycloack before version 8.0.0. The owner of β€˜placeholder.org’ domain can setup mail server on this domain and knowing only name of a client can reset password and then log in. For example, for client name β€˜test’ the email address will be β€˜[emailΒ protected]’.

AI Score

9.1

Confidence

High

EPSS

0.002

Percentile

61.9%