CVE-2004-2024
The distribution of Zen Cart 1.1.4 before patch 2 includes certain debugging code in the Admin password retrieval functi
The distribution of Zen Cart 1.1.4 before patch 2 includes certain debugging code in the Admin password retrieval functionality, which allows attackers to gain administrative privileges via password_forgotten.php.
HIGH · CVSS 7.5
EPSS 0.00467
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0