High severity7.8NVD Advisory· Published Jan 31, 2018· Updated Jun 17, 2026
CVE-2017-8916
CVE-2017-8916
Description
In Center for Internet Security CIS-CAT Pro Dashboard before 1.0.4, an authenticated user is able to change an administrative user's e-mail address and send a forgot password email to themselves, thereby gaining administrative access.
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.