CVE

Id
52233  
CVE No.
CVE-2011-4321  
Status
Candidate  
Description
The password reset functionality in Joomla! 1.5.x through 1.5.24 uses weak random numbers, which makes it easier for remote attackers to change the passwords of arbitrary users via unspecified vectors.  
Phase
Assigned (20111104)  
Votes
None (candidate not yet proposed)  
Comments