Skip to content
Noroxi

CWE-640 · 276 records

Weak Password Recovery Mechanism for Forgotten Password

CVEs in this class

276 records

  • Weak Password Recovery Mechanism for Forgotten Password in GitLab

    CriticalCVSS 9.8KEVWeaponizedEPSS 95%

    gitlab · gitlabJan 12, 2024

  • CVE-2019-18818
    68This week

    strapi before 3.0.0-beta.17.5 mishandles password resets within packages/strapi-admin/controllers/Auth.js and packages/strapi-plugin-users-p

    CriticalCVSS 9.8WeaponizedEPSS 98%

    strapi · strapiNov 7, 2019

  • CVE-2017-7615
    62This week

    MantisBT through 2.3.0 allows arbitrary password reset and unauthenticated admin access via an empty confirm_hash value to verify.php.

    HighCVSS 8.8WeaponizedEPSS 91%

    mantisbt · mantisbtApr 16, 2017

  • Django before 1.11.27, 2.x before 2.2.9, and 3.x before 3.0.1 allows account takeover.

    CriticalCVSS 9.8Proof of conceptEPSS 54%

    djangoproject · djangoDec 18, 2019

  • Allegra calculateTokenExpDate Password Recovery Authentication Bypass Vulnerability

    CriticalCVSS 9.8Proof of conceptEPSS 48%

    alltena · allegraJun 20, 2025

  • WordPress PSW Front-end Login & Registration plugin <= 1.13 - Broken Authentication Vulnerability

    CriticalCVSS 9.8Proof of conceptEPSS 25%

    gilblas ngunte possi · psw front-end login & registrationMay 23, 2025

  • TranslatePress – Multilingual <= 3.3.1 - Unauthenticated Account Takeover via Password Reset Link Disclosure

    CriticalCVSS 9.8Proof of conceptEPSS 9%

    cozmoslabs · translatepress – translate multilingual sites with ai translationAug 26, 2026

  • gps-server.net GPS Tracking Software (self hosted) 2.x has a password reset procedure that immediately resets passwords upon an unauthentica

    CriticalCVSS 9.8Proof of conceptEPSS 7%

    gps-server · gps tracking softwareJan 2, 2018

  • ZPanel 10.0.1 has insufficient entropy for its password reset process.

    CriticalCVSS 9.8Proof of conceptEPSS 5%

    zpanelcp · zpanelFeb 4, 2020

  • The WP-jobhunt plugin before version 2.4 for WordPress does not control AJAX requests sent to the cs_reset_pass() function through the admin

    CriticalCVSS 9.8No exploitEPSS 4%

    wp-jobhunt project · wp-jobhuntMar 21, 2019

  • An Unverified Password Change vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200 whi

    CriticalCVSS 9.8No exploitEPSS 3%

    schneider-electric · modicom m340 firmwareNov 30, 2018

  • LTB (aka LDAP Tool Box) Self Service Password before 1.3 allows a change to a user password (without knowing the old password) via a crafted

    CriticalCVSS 9.8No exploitEPSS 3%

    ltb-project · ldap tool box self service passwordJun 14, 2018

  • An Unverified Password Change vulnerability exists in the embedded web servers in all Modicon M340, Premium, Quantum PLCs and BMXNOR0200 whi

    CriticalCVSS 9.8No exploitEPSS 2%

    schneider-electric · modicom m340 firmwareNov 30, 2018

  • Ellucian (formerly SunGard) Banner Student 8.5.1.2 through 8.7 allows remote attackers to reset arbitrary passwords via unspecified vectors,

    CriticalCVSS 9.8No exploitEPSS 2%

    ellucian · banner studentSep 11, 2017

  • An issue was discovered in /admin/users/update in M/Monit before 3.7.3.

    CriticalCVSS 9.8No exploitEPSS 2%

    tildeslash · monitApr 22, 2019

  • A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic

    CriticalCVSS 9.8No exploitEPSS 2%

    schneider-electric · powerlogic pm5560 firmwareJun 11, 2021

  • An issue was discovered in Enalean Tuleap before 10.5.

    CriticalCVSS 9.8No exploitEPSS 2%

    enalean · tuleapSep 21, 2018

  • In Craft CMS through 3.1.7, the elevated session password prompt was not being rate limited like normal login forms, leading to the possibil

    CriticalCVSS 9.8No exploitEPSS 2%

    craftcms · craft cmsOct 24, 2019

  • An issue was discovered in Saviynt Enterprise Identity Cloud (EIC) 5.5 SP2.x.

    CriticalCVSS 9.8No exploitEPSS 2%

    saviynt · enterprise identity cloudJan 23, 2022

  • Unauthenticated Password Reset

    CriticalCVSS 10.0No exploitEPSS 1%

    riello-ups · netman 204 firmwareSep 24, 2024

  • A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the

    CriticalCVSS 10.0Proof of conceptEPSS 0%

    ddsn · cm3 acora cmsJan 12, 2026

  • Missing password verification in the web interface on Gigaset Maxwell Basic VoIP phones with firmware 2.22.7 would allow a remote attacker (

    CriticalCVSS 9.8No exploitEPSS 2%

    gigasetpro · maxwell basic firmwareDec 20, 2018

  • CVE-2017-2766
    39Monitor

    EMC Documentum eRoom version 7.4.4, EMC Documentum eRoom version 7.4.4 SP1, EMC Documentum eRoom version prior to 7.4.5 P04, EMC Documentum

    CriticalCVSS 9.8No exploitEPSS 2%

    emc · documentum eroomFeb 3, 2017

  • An issue was discovered in Open XDMoD through 7.5.0.

    CriticalCVSS 9.8No exploitEPSS 2%

    buffalo · open xdmodMay 2, 2019

  • Seceon aiSIEM before 6.3.2 (build 585) is prone to an unauthenticated account takeover vulnerability in the Forgot Password feature.

    CriticalCVSS 9.8No exploitEPSS 2%

    seceon · aisiemJun 8, 2021

All vulnerability classes