Security Advisory
CVE-2019-20062
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
MFScripts YetiShare v3.5.2 through v4.5.4 might allow an attacker to reset a password by using a leaked hash (the hash never expires until used).