CVE-2015-8707: Infoleak
Password reset tokens in Magento CE before 1.9.2.2, and Magento EE before 1.14.2.2 are passed via a GET request and not canceled after use, which allows remote attackers to obtain user passwords via a crafted external service with access to the referrer field.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8707?
CVE-2015-8707 is classified as a high severity vulnerability due to the potential for remote attackers to exploit password reset tokens.
How do I fix CVE-2015-8707?
To fix CVE-2015-8707, upgrade to Magento CE version 1.9.2.2 or later, or Magento EE version 1.14.2.2 or later.
Who is affected by CVE-2015-8707?
CVE-2015-8707 affects users of Magento CE versions prior to 1.9.2.2 and Magento EE versions prior to 1.14.2.2.
What type of attack is enabled by CVE-2015-8707?
CVE-2015-8707 enables remote attackers to steal user passwords through crafted requests leveraging the vulnerability in password reset handling.
When was CVE-2015-8707 discovered?
CVE-2015-8707 was disclosed in 2015, highlighting a significant security issue in older versions of Magento.