CVE-2020-12735

Severity CVSS v4.0:
Pending analysis
Type:
CWE-331 Insufficient Entropy
Publication date:
08/05/2020
Last modified:
12/05/2020

Description

reset.php in DomainMOD 4.13.0 uses insufficient entropy for password reset requests, leading to account takeover.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:domainmod:domainmod:4.13.0:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools