CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.0. See the original NVD description below for full technical details.
CVE
CVE-2005-4688
Severity
MEDIUM
CVSS
5
EPSS
0.88%
Original NVD Description
PunBB 1.2.9 does not require password entry when changing the e-mail address in an account's profile, which might allow an attacker to make an address change via a hijacked login session.