VYPR
High severity7.5NVD Advisory· Published Sep 10, 2019· Updated Jun 17, 2026

CVE-2019-16106

CVE-2019-16106

Description

The Recruitment module in Humanica Humatrix 7 1.0.0.203 and 1.0.0.681 allows an unauthenticated attacker to change the password of any user via the recruitment_online/personalData/act_acounttab.cfm txtNewUserName and hdNP fields.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Humanica/Humatrix2 versions
    cpe:2.3:a:humanica:humatrix:1.0.0.681:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:humanica:humatrix:1.0.0.681:*:*:*:*:*:*:*
    • cpe:2.3:a:humanica:humatrix:7.1.0.0.203:*:*:*:*:*:*:*
  • Humanica/Humatrixdescription
  • Range: 1.0.0.203, 1.0.0.681

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.