CVE

Id
91919  
CVE No.
CVE-2016-5100  
Status
Candidate  
Description
Froxlor before 0.9.35 uses the PHP rand function for random number generation, which makes it easier for remote attackers to guess the password reset token by predicting a value.  
Phase
Assigned (20160526)  
Votes
None (candidate not yet proposed)  
Comments