CVE-2020-28208
An email address enumeration vulnerability exists in the password reset function of Rocket.Chat through 3.9.1.
An email address enumeration vulnerability exists in the password reset function of Rocket.Chat through 3.9.1.
MEDIUM · CVSS 5.3
EPSS 0.44091
Schedule remediation
- EPSS ≥ 0.10 - elevated exploitation probability
- EPSS percentile: top 2% of all CVEs by exploitation likelihood
- Public exploit or PoC is available
Sigma rules0
YARA rules0