Janto Unverified Password Change Vulnerability

Vulnerability

A vulnerability allowing password changes without current password verification exists in Janto versions prior to r12. This issue could enable an unauthenticated attacker to change another user's password by sending a specific POST request to the '/public/cgi/Gateway.php' endpoint.

Impact

Exploitation of this vulnerability allows for unauthorized password changes, potentially leading to account takeover.

Reproduction

To reproduce this vulnerability, send a POST request to the '/public/cgi/Gateway.php' endpoint. Include the necessary parameters to change a user's password, omitting the current password requirement.

Remediation

Users of Janto in SaaS mode have been upgraded to version r12, which addresses this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
7.7
remediation
0.0
relevance
0.0
threat
1.6
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.