CVE-2018-3783
CVE-2018-3783
A privilege escalation detected in flintcms versions <= 1.1.9 allows account takeover due to blind MongoDB injection in password reset.
Affected products
https://github.com/JasonEtco · flintcmsWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://hackerone.com/reports/386807