CVE-2024-49370
Change-Password via Portal-Profile sets PimcoreBackendUser password without hashing
Severity Score
8.7
*CVSS v4
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Track*
*SSVC
Descriptions
Pimcore is an open source data and experience management platform. When a PortalUserObject is connected to a PimcoreUser and "Use Pimcore Backend Password" is set to true, the change password function in Portal Profile sets the new password. Prior to Pimcore portal engine versions 4.1.7 and 3.1.16, the password is then set without hashing so it can be read by everyone. Everyone who combines PortalUser to PimcoreUsers and change passwords via profile settings could be affected. Versions 4.1.7 and 3.1.16 of the Pimcore portal engine fix the issue.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
System
Vulnerable | Subsequent
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Track*
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2024-10-14 CVE Reserved
- 2024-10-23 CVE Published
- 2024-10-23 CVE Updated
- 2024-11-07 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-256: Plaintext Storage of a Password
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://github.com/pimcore/pimcore/security/advisories/GHSA-74p5-77rq-gfqc | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Pimcore Search vendor "Pimcore" | Pimcore Search vendor "Pimcore" for product "Pimcore" | < 3.1.16 Search vendor "Pimcore" for product "Pimcore" and version " < 3.1.16" | en |
Affected
| ||||||
Pimcore Search vendor "Pimcore" | Pimcore Search vendor "Pimcore" for product "Pimcore" | >= 4.0.0 < 4.1.7 Search vendor "Pimcore" for product "Pimcore" and version " >= 4.0.0 < 4.1.7" | en |
Affected
|