First published: Wed Jun 05 2019(Updated: )
Bludit prior to 3.9.1 allows a non-privileged user to change the password of any account, including admin. This occurs because of bl-kernel/admin/controllers/user-password.php Insecure Direct Object Reference (a modified username POST parameter).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bludit | <3.9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-12742 is a vulnerability in Bludit prior to version 3.9.1 that allows a non-privileged user to change the password of any account, including admin.
The vulnerability occurs due to insecure direct object reference in the 'user-password.php' file in Bludit. This can be exploited by modifying the 'username' parameter in the POST request.
The severity of CVE-2019-12742 is rated as high with a severity value of 8.8.
Bludit versions up to, but not including, 3.9.1 are affected by CVE-2019-12742.
To fix CVE-2019-12742, users should upgrade to Bludit version 3.9.1 or later.