VYPR
Critical severity9.1NVD Advisory· Published Jan 19, 2021· Updated Jun 22, 2026

CVE-2021-25323

CVE-2021-25323

Description

The default setting of MISP 2.4.136 did not enable the requirements (aka require_password_confirmation) to provide the previous password when changing a password.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Misp/Misp2 versions
    cpe:2.3:a:misp-project:misp:2.4.136:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:misp-project:misp:2.4.136:*:*:*:*:*:*:*
    • (no CPE)range: =2.4.136
  • MISP/MISPdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.