The Reset Password add-on prior to 1.2.0 for Alfresco suffers from CMIS-SQL Injection, which allows a malicious user to inject a query within the email input field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
flexsolution reset password |