VYPR

Self Service Password

by LDAP Tool Box

CVEs (1)

  • CVE-2023-53958HigDec 19, 2025
    risk 0.49cvss 7.5epss 0.00

    LDAP Tool Box Self Service Password 1.5.2 contains a password reset vulnerability that allows attackers to manipulate HTTP Host headers during token generation. Attackers can craft malicious password reset requests that generate tokens sent to a controlled server, enabling…