Vulnerabilities > CVE-2023-50172 - Unspecified vulnerability in Wwbn Avideo 15Fed957Fb
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
A recovery notification bypass vulnerability exists in the userRecoverPass.php captcha validation functionality of WWBN AVideo dev master commit 15fed957fb. A specially crafted HTTP request can lead to the silent creation of a recovery pass code for any user.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |