Vulnerabilities > Instant Update

DATE CVE VULNERABILITY TITLE RISK
2018-06-26 CVE-2018-1000501 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Instant-Update Instant Update CMS 0.1/0.3.1/0.3.2
Instant Update CMS contains a Password Reset Vulnerability vulnerability in /iu-application/controllers/administration/auth.php that can result in Account Tackover.
network
low complexity
instant-update CWE-640
critical
9.8