Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-45782

An issue was discovered in dotCMS core 5.3.8.5 through 5.3.8.15 and 21.03 through 22.10.1. A cryptographically insecure random generation algorithm for password-reset token generation leads to account takeover.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.4%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2022-45782
  • Dotcms » Dotcms » Version: 21.03
    cpe:2.3:a:dotcms:dotcms:21.03
  • Dotcms » Dotcms » Version: 21.04
    cpe:2.3:a:dotcms:dotcms:21.04
  • Dotcms » Dotcms » Version: 21.05
    cpe:2.3:a:dotcms:dotcms:21.05
  • Dotcms » Dotcms » Version: 21.05.1
    cpe:2.3:a:dotcms:dotcms:21.05.1
  • Dotcms » Dotcms » Version: 21.06
    cpe:2.3:a:dotcms:dotcms:21.06
  • Dotcms » Dotcms » Version: 21.06.1
    cpe:2.3:a:dotcms:dotcms:21.06.1
  • Dotcms » Dotcms » Version: 21.06.10
    cpe:2.3:a:dotcms:dotcms:21.06.10
  • Dotcms » Dotcms » Version: 21.06.12
    cpe:2.3:a:dotcms:dotcms:21.06.12
  • Dotcms » Dotcms » Version: 21.06.13
    cpe:2.3:a:dotcms:dotcms:21.06.13
  • Dotcms » Dotcms » Version: 21.06.14
    cpe:2.3:a:dotcms:dotcms:21.06.14
  • Dotcms » Dotcms » Version: 21.06.3
    cpe:2.3:a:dotcms:dotcms:21.06.3
  • Dotcms » Dotcms » Version: 21.06.4
    cpe:2.3:a:dotcms:dotcms:21.06.4
  • Dotcms » Dotcms » Version: 21.06.5
    cpe:2.3:a:dotcms:dotcms:21.06.5
  • Dotcms » Dotcms » Version: 21.06.6
    cpe:2.3:a:dotcms:dotcms:21.06.6
  • Dotcms » Dotcms » Version: 21.06.7
    cpe:2.3:a:dotcms:dotcms:21.06.7
  • Dotcms » Dotcms » Version: 21.06.8
    cpe:2.3:a:dotcms:dotcms:21.06.8
  • Dotcms » Dotcms » Version: 21.06.9
    cpe:2.3:a:dotcms:dotcms:21.06.9
  • Dotcms » Dotcms » Version: 21.08
    cpe:2.3:a:dotcms:dotcms:21.08
  • Dotcms » Dotcms » Version: 21.09
    cpe:2.3:a:dotcms:dotcms:21.09
  • Dotcms » Dotcms » Version: 21.10
    cpe:2.3:a:dotcms:dotcms:21.10
  • Dotcms » Dotcms » Version: 21.10.1
    cpe:2.3:a:dotcms:dotcms:21.10.1
  • Dotcms » Dotcms » Version: 5.3.8.10
    cpe:2.3:a:dotcms:dotcms:5.3.8.10
  • Dotcms » Dotcms » Version: 5.3.8.11
    cpe:2.3:a:dotcms:dotcms:5.3.8.11
  • Dotcms » Dotcms » Version: 5.3.8.12
    cpe:2.3:a:dotcms:dotcms:5.3.8.12
  • Dotcms » Dotcms » Version: 5.3.8.13
    cpe:2.3:a:dotcms:dotcms:5.3.8.13
  • Dotcms » Dotcms » Version: 5.3.8.14
    cpe:2.3:a:dotcms:dotcms:5.3.8.14
  • Dotcms » Dotcms » Version: 5.3.8.5
    cpe:2.3:a:dotcms:dotcms:5.3.8.5
  • Dotcms » Dotcms » Version: 5.3.8.6
    cpe:2.3:a:dotcms:dotcms:5.3.8.6
  • Dotcms » Dotcms » Version: 5.3.8.6.1
    cpe:2.3:a:dotcms:dotcms:5.3.8.6.1
  • Dotcms » Dotcms » Version: 5.3.8.6.2
    cpe:2.3:a:dotcms:dotcms:5.3.8.6.2
  • Dotcms » Dotcms » Version: 5.3.8.7
    cpe:2.3:a:dotcms:dotcms:5.3.8.7
  • Dotcms » Dotcms » Version: 5.3.8.8
    cpe:2.3:a:dotcms:dotcms:5.3.8.8
  • Dotcms » Dotcms » Version: 5.3.8.9
    cpe:2.3:a:dotcms:dotcms:5.3.8.9


Contact Us

Shodan ® - All rights reserved