漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
A vulnerability in the password reset workflow of the Touch Lebanon Mobile App 2.20.2 allows an attacker to bypass the OTP reset password mechanism. By manipulating the reset process, an unauthorized user may be able to reset the password and gain access to the account without needing to provide a legitimate authentication factor, such as an OTP. This compromises account security and allows for potential unauthorized access to user data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Touch Lebanon Mobile App 安全漏洞
Vulnerability Description
Touch Lebanon Mobile App是黎巴嫩Touch公司的一款免费应用程序。 Touch Lebanon Mobile App 2.20.2版本存在安全漏洞,该漏洞源于密码重置流程存在缺陷,可能导致绕过OTP机制。
CVSS Information
N/A
Vulnerability Type
N/A