Security Advisory
CVE-2019-17392
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Progress Sitefinity 12.1 has a Weak Password Recovery Mechanism for a Forgotten Password because the HTTP Host header is mishandled.