CVE-2008-0141 Information

Description

actions.php in WebPortal CMS 0.6-beta generates predictable passwords containing only the time of day which makes it easier for remote attackers to obtain access to any account via a lostpass action.

Reference

http://www.securityfocus.com/bid/27145 https://exchange.xforce.ibmcloud.com/vulnerabilities/39486 https://www.exploit-db.com/exploits/4835

Share on: