CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. See the original NVD description below for full technical details.
CVE
CVE-2020-10104
Severity
MEDIUM
CVSS
4.3
EPSS
0.83%
Original NVD Description
An issue was discovered in Zammad 3.0 through 3.2. After authentication, it transmits sensitive information to the user that may be compromised and used by an attacker to gain unauthorized access. Hashed passwords are returned to the user when visiting a certain URL.
Related CVEs
Other vulnerabilities affecting the same vendor(s)