Vulnerability Details CVE-2014-2269
modules/Users/ForgotPassword.php in vTiger 6.0 before Security Patch 2 allows remote attackers to reset the password for arbitrary users via a request containing the username, password, and confirmPassword parameters.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.7%
CVSS Severity
CVSS v2 Score 6.4
Products affected by CVE-2014-2269
-
cpe:2.3:a:vtiger:vtiger_crm:6.0.0