Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38736
HistoryJan 03, 2023 - 3:29 a.m.

Information Disclosure

2023-01-0303:29:47
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
kiwitcms
vulnerability
password validation
information disclosure
weak passwords
attacker

EPSS

0.002

Percentile

55.8%

kiwitcms is vulnerable to information disclosure. The vulnerability exists because the common.py does not enable the password validators to avoid users choosing weak passwords when the users register new accounts or change passwords, allowing an attacker to guess the password.

EPSS

0.002

Percentile

55.8%

Related for VERACODE:38736