VYPR
High severity7.5NVD Advisory· Published Feb 13, 2019· Updated Jun 17, 2026

CVE-2018-0696

CVE-2018-0696

Description

OpenAM (Open Source Edition) 13.0 and later does not properly manage sessions, which allows remote authenticated attackers to change the security questions and reset the login password via unspecified vectors.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:osstech:openam:*:*:*:*:*:*:*:*
    Range: >=13.0,<=13.0.0-120
  • OpenAMP/OpenAMPllm-fuzzy
    Range: >=13.0
  • OpenAM Consortium/OpenAMv5
    Range: 13.0 and later

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.