cve/2023/CVE-2023-3221.md
2024-05-25 21:48:12 +02:00

761 B

CVE-2023-3221

Description

User enumeration vulnerability in Password Recovery plugin 1.2 version for Roundcube, which could allow a remote attacker to create a test script against the password recovery function to enumerate all users in the database.

POC

Reference

No PoCs from references.

Github