Skip to main content
    CVE-2002-0226 — retrieve_password.pl in DCForum 6.x and 2000 generates predictable new passwords based on a sessionID, which allows remote attackers to request a new password on behalf of another user and use the ses — CVE Database · The Intelligence Room