MegaBIP Password Reset Token Brute Force Vulnerability Allowing Unauthorized Password Changes

Vulnerability

A vulnerability in MegaBIP software versions through 5.19 allows an unauthenticated attacker who knows user login names to brute force password reset tokens. These tokens are generated using a limited range of random values combined with a queryable value, enabling the attacker to manipulate the token and reset passwords for any user, including administrators. This vulnerability arises from the predictable token generation method, which creates an opportunity for brute force attacks on the password reset mechanism.

Impact

Exploitation of this vulnerability allows for unauthorized password changes, potentially leading to account takeovers, including those of administrative accounts.

Remediation

Users are advised to update to MegaBIP version 5.20, which addresses this vulnerability. During the update, it is important to manually replace three files in the editor/config directory, as the automatic updater does not modify this folder. The files to be replaced are include_wysiwyg1.php, include_wysiwyg2.php, and include_wysiwyg3.php.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
4.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.