Discuz! Reset Lost Password Security Bypass Vulnerability
BID:32424
Info
Discuz! Reset Lost Password Security Bypass Vulnerability
| Bugtraq ID: | 32424 |
| Class: | Design Error |
| CVE: |
CVE-2008-6957 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 22 2008 12:00AM |
| Updated: | Apr 16 2015 05:51PM |
| Credit: | 80vul |
| Vulnerable: |
Discuz! Discuz! 6.0.1 Discuz! Discuz! 5.0 Discuz! Discuz! 4.0 rc4 Discuz! Discuz! 7.0 |
| Not Vulnerable: | |
Discussion
Discuz! Reset Lost Password Security Bypass Vulnerability
Discuz! is prone to a security-bypass vulnerability caused by a design error when resetting lost passwords.
An attacker may exploit this issue to reset account passwords for arbitrary users and then compromise the vulnerable application. This can also aid the attacker in further attacks.
Discuz! is prone to a security-bypass vulnerability caused by a design error when resetting lost passwords.
An attacker may exploit this issue to reset account passwords for arbitrary users and then compromise the vulnerable application. This can also aid the attacker in further attacks.
Exploit / POC
Discuz! Reset Lost Password Security Bypass Vulnerability
Attackers can use a browser to exploit this issue.
The following exploit is available:
Attackers can use a browser to exploit this issue.
The following exploit is available:
Solution / Fix
Discuz! Reset Lost Password Security Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].