"-Synchronized-Data."

This commit is contained in:
CVE Team 2021-10-10 10:01:00 +00:00
parent 65ab519cd3
commit 9fbda11eda
No known key found for this signature in database
GPG Key ID: 5708902F06FEF743

View File

@ -41,7 +41,7 @@
"description_data": [
{
"lang": "eng",
"value": "In “Orchard core CMS” application, versions 1.0.0-beta1-3383 to 1.0.0 are vulnerable to an improper session termination after password change. When a password has been changed by the user or by an administrator, a user that was already logged in, will still have access to the application even after the password was changed."
"value": "In \u201cOrchard core CMS\u201d application, versions 1.0.0-beta1-3383 to 1.0.0 are vulnerable to an improper session termination after password change. When a password has been changed by the user or by an administrator, a user that was already logged in, will still have access to the application even after the password was changed."
}
]
},
@ -80,11 +80,13 @@
"reference_data": [
{
"refsource": "MISC",
"url": "https://www.whitesourcesoftware.com/vulnerability-database/CVE-2021-25966"
"url": "https://www.whitesourcesoftware.com/vulnerability-database/CVE-2021-25966",
"name": "https://www.whitesourcesoftware.com/vulnerability-database/CVE-2021-25966"
},
{
"refsource": "CONFIRM",
"url": "https://github.com/OrchardCMS/OrchardCore/blob/v1.0.0/src/OrchardCore.Modules/OrchardCore.Users/Controllers/ResetPasswordController.cs#L123"
"refsource": "MISC",
"url": "https://github.com/OrchardCMS/OrchardCore/blob/v1.0.0/src/OrchardCore.Modules/OrchardCore.Users/Controllers/ResetPasswordController.cs#L123",
"name": "https://github.com/OrchardCMS/OrchardCore/blob/v1.0.0/src/OrchardCore.Modules/OrchardCore.Users/Controllers/ResetPasswordController.cs#L123"
}
]
},
@ -92,4 +94,4 @@
"advisory": "https://www.whitesourcesoftware.com/vulnerability-database/",
"discovery": "UNKNOWN"
}
}
}