The password reset in PivotX before 2.2.4 allows remote attackers to modify the passwords of arbitrary users via unspecified vectors.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://forum.pivotx.net/viewtopic.php?f=2&t=1961 | patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/65539 | vdb entry |
http://forum.pivotx.net/viewtopic.php?p=10639#p10639 | |
http://www.vupen.com/english/advisories/2011/0445 | vdb entry vendor advisory |
http://secunia.com/advisories/43417 | third party advisory vendor advisory |
http://osvdb.org/70935 | vdb entry |
http://www.securityfocus.com/bid/46463 | vdb entry |
http://www.kb.cert.org/vuls/id/175068 | third party advisory us government resource |
http://forum.pivotx.net/viewtopic.php?f=2&t=1967 | patch |
http://blog.pivotx.net/2011-02-16/pivotx-225-released | patch |