5
CVSSv2

CVE-2011-4321

Published: 23/11/2011 Updated: 28/11/2011
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The password reset functionality in Joomla! 1.5.x up to and including 1.5.24 uses weak random numbers, which makes it easier for remote malicious users to change the passwords of arbitrary users via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

joomla joomla\\! 1.5.8

joomla joomla\\! 1.5.9

joomla joomla\\! 1.5.10

joomla joomla\\! 1.5.11

joomla joomla\\! 1.5.23

joomla joomla\\! 1.5.24

joomla joomla\\! 1.5.0

joomla joomla\\! 1.5.1

joomla joomla\\! 1.5.2

joomla joomla\\! 1.5.3

joomla joomla\\! 1.5.15

joomla joomla\\! 1.5.16

joomla joomla\\! 1.5.17

joomla joomla\\! 1.5.18

joomla joomla\\! 1.5.5

joomla joomla\\! 1.5.7

joomla joomla\\! 1.5.12

joomla joomla\\! 1.5.14

joomla joomla\\! 1.5.20

joomla joomla\\! 1.5.22

joomla joomla\\! 1.5.4

joomla joomla\\! 1.5.6

joomla joomla\\! 1.5.13

joomla joomla\\! 1.5.19

joomla joomla\\! 1.5.21