CVE-2018-16529

Severity CVSS v4.0:
Pending analysis
Type:
CWE-640 Weak Password Recovery Mechanism for Forgotten Password
Publication date:
28/03/2019
Last modified:
22/04/2022

Description

A password reset vulnerability has been discovered in Forcepoint Email Security 8.5.x. The password reset URL can be used after the intended expiration period or after the URL has already been used to reset a password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:forcepoint:email_security:*:*:*:*:*:*:*:* 8.5.0 (including) 8.5.3 (including)