Podatność CVE-2024-3777


Publikacja: 2024-04-15

Opis:

The password reset feature of Ai3 QbiBot lacks proper access control, allowing unauthenticated remote attackers to reset any user's password.

Typ:

CWE-284

(Improper Access Control)

 Referencje:
https://www.twcert.org.tw/tw/cp-132-7732-9a54e-1.html

Copyright 2024, cxsecurity.com

 

Back to Top