CVE Vulnerabilities

CVE-2010-5318

Published: Jan 03, 2015 | Modified: Jan 05, 2015
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The password-reset feature in as/index.php in SweetRice CMS before 0.6.7.1 allows remote attackers to modify the administrators password by specifying the administrators e-mail address in the email parameter.

Affected Software

Name Vendor Start Version End Version
Sweetrice Basic-cms 0.6.7.1 (including) 0.6.7.1 (including)

References