Janto Unverified Password Change Vulnerability
Vulnerability
A vulnerability allowing password changes without current password verification exists in Janto versions prior to r12. This issue could enable an unauthenticated attacker to change another user's password by sending a specific POST request to the '/public/cgi/Gateway.php' endpoint.
Impact
Exploitation of this vulnerability allows for unauthorized password changes, potentially leading to account takeover.
Reproduction
To reproduce this vulnerability, send a POST request to the '/public/cgi/Gateway.php' endpoint. Include the necessary parameters to change a user's password, omitting the current password requirement.
Remediation
Users of Janto in SaaS mode have been upgraded to version r12, which addresses this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
