Key Information about the Vulnerability: CVE Identifier: CVE-2015-10071 Vulnerability Type: Password Recovery Affected Product: gitter-badger ezpublish-modern-legacy - Vulnerable File: - Vulnerable Function: Unknown function leading to password recovery vulnerability Rating: Problematic CWE Classification: CWE-640 (Weak Authentication Mechanism) CVSS Score: Not specified (implied problematic) Release Date: 01/18/2023 Technical Details: Known, but no available exploit. Mitre ATT&CK Tactic/Technique: T1552 Mitigation: - Upgrade to version 1.0 - Apply patch - Upgrading to the latest version is recommended. Additional Information: - Vulnerable targets can be found using Google Hacking query: - Advisory, patch, and bugfix can be found on GitHub.