2.1
CVSSv2

CVE-2018-6617

Published: 11/05/2018 Updated: 03/10/2019
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Easy Hosting Control Panel (EHCP) v0.37.12.b, when using a local MySQL server, allows malicious users to change passwords of arbitrary database users by leveraging failure to ask for the current password.

Vulnerable Product Search on Vulmon Subscribe to Product

ehcp easy hosting control panel 0.37.12.b

Exploits

Easy Hosting Control Panel version 03712b suffers from an unverified password change vulnerability ...