6.4
CVSSv2

CVE-2014-2269

Published: 22/04/2014 Updated: 22/04/2014
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 680
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

modules/Users/ForgotPassword.php in vTiger 6.0 before Security Patch 2 allows remote malicious users to reset the password for arbitrary users via a request containing the username, password, and confirmPassword parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

vtiger vtiger crm 6.0.0