Home
HIGH: 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NHIGH: 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:NDefault status
unaffected
Any version before 1.36.2
affected
1.36.2
unaffected
Description
The password reset mechanism for the Pivot client application is weak, and it may allow an attacker to take over the account.
Problem types
Product status
Any version before 1.36.2
1.36.2
Credits
Malik MAKKES of Abicom Groupe OCI reported this vulnerability to MAXHUB.
References
www.cisa.gov/news-events/ics-advisories/icsa-25-338-02
github.com/...p/csaf_files/OT/white/2025/icsa-25-338-02.json