CVE-2024-42164

CVSS V2 None CVSS V3 None
Description
Insufficiently random values for generating password reset token in FIWARE Keyrock <= 8.4 allow attackers to disable two factor authorization of any user by predicting the token for the disable_2fa link.
Overview
  • CVE ID
  • CVE-2024-42164
  • Assigner
  • CyberDanube
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-08-12T11:27:17.672Z
  • Last Modified Date
  • 2024-08-12T13:13:06.556Z
History
Created Old Value New Value Data Type Notes
2024-08-13 13:09:20 Added to TrackCVE