CWE-640
317 CVEs • Abstraction: Base • Likelihood of Exploit: High
Weak Password Recovery Mechanism for Forgotten Password
The product contains a mechanism for users to recover or change their passwords without knowing the original password, but the mechanism is weak.
CVEs (317)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Teampasswordmanager 1Team Password Manager Jun 17, 2026 Nov 19, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Team Password Manager (aka TeamPasswordManager) before 10.135.236 allows password-reset poisoning. |
In all versions of GitLab CE/EE, an attacker with physical access to a user’s machine may brute force the user’s password via the change password function. There is a rate limit in place, but the attack may still be cond...Show more |
In “SuiteCRM” application, v7.1.7 through v7.10.31 and v7.11-beta through v7.11.20 fail to properly invalidate password reset links that is associated with a deleted user id, which makes it possible for account takeover...Show more |
Malicious attacker is able to find out valid user logins by using the "lost password" feature. This issue affects: OTRS AG ((OTRS)) Community Edition version 6.0.1 and later versions. OTRS AG OTRS 7.0.x version 7.0.28 an...Show more |
In “Dolibarr” application, v2.8.1 to v13.0.2 are vulnerable to account takeover via password reset functionality. A low privileged attacker can reset the password of any user in the application using the password reset l...Show more |
Discourse is an open-source platform for community discussion. In Discourse before versions 2.7.8 and 2.8.0.beta4, when adding additional email addresses to an existing account on a Discourse site an email token is gener...Show more |
In JetBrains Hub before 2021.1.13402, HTML injection in the password reset email was possible. |
In ProLink PRC2402M V1.0.18 and older, the set_sys_init function in the login.cgi binary allows an attacker to reset the password to the administrative interface of the router. |
In JetBrains Hub before 2021.1.13389, account takeover was possible during password reset. |
Akaunting version 2.1.12 and earlier suffers from a password reset spoofing vulnerability, wherein an attacker can proxy password reset requests through a running Akaunting instance, if that attacker knows the target's e...Show more |
Insecure default configuration in Liferay Portal 6.2.3 through 7.3.2, and Liferay DXP before 7.3, allows remote attackers to enumerate user email address via the forgot password functionality. The portal.property login.s...Show more |
1Schneider Electric 5Powerlogic Pm5560 Firmware Powerlogic Pm5561 FirmwarePowerlogic Pm5562 Firmware+2 moreJun 17, 2026 Jun 11, 2021 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and PowerLogic EGX300 (see security notification for version infromation)...Show more |
Seceon aiSIEM before 6.3.2 (build 585) is prone to an unauthenticated account takeover vulnerability in the Forgot Password feature. The lack of correct configuration leads to recovery of the password reset link generate...Show more |
1Schneider Electric 16Mcsesm043f23f0 Firmware Mcsesm053f1cs0 FirmwareMcsesm053f1cu0 Firmware+13 moreJun 17, 2026 May 26, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Weak Password Recovery Mechanism for Forgotten Password vulnerability exists on Modicon Managed Switch MCSESM* and MCSESP* V8.21 and prior which could cause an unauthorized password change through HTTP / HTTPS when basic...Show more |
In JetBrains TeamCity before 2020.2.3, account takeover was potentially possible during a password reset. |
In Strapi through 3.6.0, the admin panel allows the changing of one's own password without entering the current password. An attacker who gains access to a valid session can use this to take over an account by changing t...Show more |
1Netgear 16Cbr40 Firmware R6900p FirmwareR7000 Firmware+13 moreJun 17, 2026 Mar 23, 2021 N/A· v4 8.1 HIGH· v3 4.8 MEDIUM· v2 Certain NETGEAR devices are affected by password reset by an unauthenticated attacker. This affects RBK852 before 3.2.10.11, RBK853 before 3.2.10.11, RBR854 before 3.2.10.11, RBR850 before 3.2.10.11, RBS850 before 3.2.10...Show more |
2Misp Misp Project2Misp MispJun 22, 2026 Jan 19, 2021 N/A· v4 9.1 CRITICAL· v3 6.4 MEDIUM· v2 The default setting of MISP 2.4.136 did not enable the requirements (aka require_password_confirmation) to provide the previous password when changing a password. |
Select Dell Client Commercial and Consumer platforms support a BIOS password reset capability that is designed to assist authorized customers who forget their passwords. Dell is aware of unauthorized password generation...Show more |
Email Injection in TerraMaster TOS <= 4.2.06 allows remote unauthenticated attackers to abuse the forget password functionality and achieve account takeover. |