Vulnerabilities > Sapphireims

DATE CVE VULNERABILITY TITLE RISK
2021-08-11 CVE-2020-25566 Missing Authentication for Critical Function vulnerability in Sapphireims 5.0
In SapphireIMS 5.0, it is possible to take over an account by sending a request to the Save_Password form as shown in POC.
network
low complexity
sapphireims CWE-306
critical
9.8