NA

CVE-2023-43902

Published: 14/11/2023 Updated: 17/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Incorrect access control in the Forgot Your Password function of EMSigner v2.8.7 allows unauthenticated malicious users to access accounts of all registered users, including those with administrator privileges via a crafted password reset token.

Vulnerable Product Search on Vulmon Subscribe to Product

emsigner emsigner 2.8.7