Security Advisory

CVE-2024-6890

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-07 23:09:40
Last updated 2024-08-08 13:28:52
Assigner KoreLogic
State PUBLISHED

Description

Password reset tokens are generated using an insecure source of randomness. Attackers who know the username of the Journyx installation user can bruteforce the password reset and change the administrator password.