vendor:
Strapi CMS
by:
WackyH4cker
9.8
CVSS
CRITICAL
Password Reset Mishandling
255
CWE
Product Name: Strapi CMS
Affected Version From: 3.0.0-beta.17.4
Affected Version To: 3.0.0-beta.17.4
Patch Exists: YES
Related CWE: CVE-2019-18818
CPE: a:strapi:strapi:3.0.0-beta.17.4
Tags: cve2019,strapi,auth-bypass,intrusive,edb,cve
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Nuclei Metadata: {'max-request': 1, 'vendor': 'strapi', 'product': 'strapi'}
Platforms Tested: Linux
2019
Strapi CMS 3.0.0-beta.17.4 – Set Password (Unauthenticated) (Metasploit)
This exploit module abuses the mishandling of password reset in JSON for Strapi CMS version 3.0.0-beta.17.4 to change the password of a privileged user.
Mitigation:
Upgrade to the latest version of Strapi CMS