Back to CVE List

CVE-2026-65887

Vulnerability Description

Joomla Extension - balbooa.com - Unauthenticated arbitrary password reset in Gridbox < 2.20.2 - The resetPassword method allows actors to reset any user password, allowing to login and act as these users - excluding super admins.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-284
Source
NVD
Vendor
balbooa.com
Product
Gridbox extension for Joomla

External References

Discussion (0)

Add Comment

No comments yet. Be the first!