CVE-2024-22646
MEDIUM5.3EPSS 0.35%Published: 3/6/2024Modified: 3/6/2024
Description
An email address enumeration vulnerability exists in the password reset function of SEO Panel version 4.10.0. This allows an attacker to guess which emails exist on the system.
Affected packages (1)
- Bitnami/seopanel>= 4.10.0, <= 4.10.0
CVSS scores
| Source | Version | Severity | Vector |
|---|---|---|---|
| osv | CVSS 3.1 | MEDIUM5.3 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |