CVE-2018-16529

CVE-2018-16529

Vendor Forcepoint
Product Forcepoint Email Security
Weakness CWE-640 · Weak password recovery
Published March 28, 2019
Last update August 5, 2024

CVSS base score

What the vulnerability does

01Description

A password reset vulnerability has been discovered in Forcepoint Email Security 8.5.x. The password reset URL can be used after the intended expiration period or after the URL has already been used to reset a password.

Key dates

02Disclosure timeline

March 28, 2019 CVE published
August 5, 2024 Record updated