#VU5378 Administrative password reset in Pagekit CMS - CVE-2017-5594

 

#VU5378 Administrative password reset in Pagekit CMS - CVE-2017-5594

Published: January 25, 2017 / Updated: January 25, 2017


Vulnerability identifier: #VU5378
Vulnerability risk: High
CVSSv4.0: CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:A/U:Amber
CVE-ID: CVE-2017-5594
CWE-ID: CWE-264
Exploitation vector: Remote access
Exploit availability: Public exploit is available
Vulnerable software:
Pagekit CMS
Software vendor:
YOOtheme

Description

The vulnerability allows a remote attacker to gain administrative access to vulnerable website.

The vulnerability exists due to incorrect validation of user-supplied data during password reset process, when the debug toolbar is enabled. A remote attacker can send a specially crafted HTTP request and reset administrator’s password.

Successful exploitation of the vulnerability may allow an attacker to gain full access to vulnerable website.


Remediation

Update to version 1.0.11.

External links