The Forgot Password implementation in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance allows remote malicious users to reset passwords of accounts with blank Hint questions and Hint answers by sending an empty value for each of these two Hint fields.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
consona consona dynamic agent - |
||
consona consona live assistance |
||
consona consona subscriber assistance |