CVE

Id
102439  
CVE No.
CVE-2017-5619  
Status
Candidate  
Description
An issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1. Attackers can login with the hashed password itself (e.g., from the DB) instead of the valid password string.  
Phase
Assigned (20170129)  
Votes
None (candidate not yet proposed)  
Comments