Weak Password Requirements in GitHub repository froxlor/froxlor prior to 2.0.10.
The product does not require that users should have strong passwords, which makes it easier for attackers to compromise user accounts.
Link | Tags |
---|---|
https://huntr.dev/bounties/a4f86d6f-0d5d-428d-a4b3-551b20a21ce6 | patch third party advisory exploit |
https://github.com/froxlor/froxlor/commit/2a84e9c1207fd3d792b7fb198fd0c66fe1a66a7a | third party advisory patch |