The GPM from WormHole Tech has an Unverified Password Change vulnerability, allowing unauthenticated remote attackers to change any user's password and use the modified password to log into the system.
References
Configurations
No configuration.
History
12 May 2025, 17:32
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
12 May 2025, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-12 04:15
Updated : 2025-05-12 17:32
NVD link : CVE-2025-4558
Mitre link : CVE-2025-4558
CVE.ORG link : CVE-2025-4558
JSON object : View
Products Affected
No product.
CWE
CWE-620
Unverified Password Change