PoC Index

CVE-2022-23079

MEDIUM 6.8EPSS 1.3%

In motor-admin versions 0.0.1 through 0.2.56 are vulnerable to host header injection in the password reset functionality where malicious actor can send fake password reset email to arbitrary victim.

CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
1.34% chance of exploitation in the next 30 days, 69th percentile
Published
2022-06-22
Updated
2024-09-16

Proof-of-concept exploits (1)

References

Related