Security Advisory

CVE-2022-23079

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-06-22 13:05:10
Last updated 2024-09-16 23:52:11
Assigner Mend
State PUBLISHED

Description

In motor-admin versions 0.0.1 through 0.2.56 are vulnerable to host header injection in the password reset functionality where malicious actor can send fake password reset email to arbitrary victim.