Description
Weak Password Recovery Mechanism for Forgotten Password vulnerability in Hossein Material Dashboard. This issue affects Material Dashboard: from n/a through 1.4.6.
Problem types
CWE-640 Weak Password Recovery Mechanism for Forgotten Password
Product status
Any version
Credits
Martino Spagnuolo (r3verii) (Patchstack Alliance)
References
patchstack.com/...ivilege-escalation-vulnerability?_s_id=cve