Unrated severityNVD Advisory· Published Aug 12, 2009· Updated Apr 23, 2026
CVE-2008-6957
CVE-2008-6957
Description
member.php in Crossday Discuz! Board allows remote attackers to reset passwords of arbitrary users via crafted (1) lostpasswd and (2) getpasswd actions, possibly involving predictable generation of the id parameter.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.80vul.com/dzvul/sodb/14/dz-exp-sodb-2008-14_php.htmnvdExploit
- www.securityfocus.com/bid/32424nvdExploit
- secunia.com/advisories/32731nvdVendor Advisory
- www.discuz.net/archiver/nvdVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/46785nvd
- www.exploit-db.com/exploits/7185nvd
News mentions
0No linked articles in our index yet.