CVE-2019-16669

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/09/2019
Last modified:
23/09/2019

Description

The Reset Password feature in Pagekit 1.0.17 gives a different response depending on whether the e-mail address of a valid user account is entered, which might make it easier for attackers to enumerate accounts.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pagekit:pagekit:1.0.17:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools