Blog | G5 Cyber Security

Vulnerability Spotlight: Password reset vulnerability in Epignosis eFront

Epignosis eFront contains a vulnerability that could allow an adversary to reset the password of any account of their choosing. An attacker could exploit this vulnerability by predicting a password reset seed to generate the correct password reset for a one-time token. The following SNORT (SNORT) rules will detect exploitation attempts. The following rules may be released at a future date and current rules are subject to change pending additional vulnerability information. An update is available for affected customers and the vulnerability has been resolved.”]

Source: https://blog.talosintelligence.com/2021/03/vulnerability-spotlight-password-reset.html

Exit mobile version