CVE-2024-6203
Last modified
CVE-2024-6203 is a high-severity vulnerability rated 8.1/10 on the CVSS scale. HaloITSM versions up to 2.146.1 are affected by a Password Reset Poisoning vulnerability. Poisoned password reset links can be sent to existing HaloITSM users (given their email address is known). EPSS estimates a 0.37% chance of exploitation in the next 30 days.
Description
HaloITSM versions up to 2.146.1 are affected by a Password Reset Poisoning vulnerability. Poisoned password reset links can be sent to existing HaloITSM users (given their email address is known). When these poisoned links get accessed (e.g. manually by the victim or automatically by an email client software), the password reset token is leaked to the malicious actor, allowing them to set a new password for the victim's account.This potentially leads to account takeover attacks.HaloITSM versions past 2.146.1 (and patches starting from 2.143.61 ) fix the mentioned vulnerability.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Haloservicesolutions | Haloitsm | < 2.143.61 |
| Haloservicesolutions | Haloitsm | >= 2.144, < 2.146.1 |
References
- https://haloitsm.com/guides/article/?kbid=2155Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-6203?
How severe is CVE-2024-6203?
How do I fix CVE-2024-6203?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-6197libcurl's ASN1 parser has this utf8asn1str() function used f…7.5
- CVE-2024-6198The device exposes a web interface on ports TCP/3030 and TCP…7.7
- CVE-2024-6199An unauthenticated attacker on the WAN interface, with the a…7.7
- CVE-2024-6200HaloITSM versions up to 2.146.1 are affected by a Stored Cro…5.4
- CVE-2024-6201HaloITSM versions up to 2.146.1 are affected by a Template I…5.3
- CVE-2024-6202HaloITSM versions up to 2.146.1 are affected by a SAML XML S…9.8
- CVE-2024-6204Zohocorp ManageEngine Exchange Reporter Plus versions before…8.1
- CVE-2024-6205The PayPlus Payment Gateway WordPress plugin before 6.6.9 do…9.8
- CVE-2024-6206A security vulnerability has been identified in HPE Athonet …7.5
- CVE-2024-6207CVE 2021-22681 https://www.rockwellautomation.com/en-us/trus…7.5
- CVE-2024-6208The Download Manager plugin for WordPress is vulnerable to S…5.4
- CVE-2024-6209Unauthorized file access in WEB Server in ABB ASPECT - Enter…7.5
Are you affected by CVE-2024-6203?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
