CVE-2019-18818
CRITICAL EXPLOITED NUCLEIStrapi CMS Unauthenticated Password Reset
Title source: metasploitDescription
strapi before 3.0.0-beta.17.5 mishandles password resets within packages/strapi-admin/controllers/Auth.js and packages/strapi-plugin-users-permissions/controllers/Auth.js.
Exploits (10)
exploitdb
WORKING POC
by David Anglada · pythonwebappsmultiple
https://www.exploit-db.com/exploits/50237
metasploit
WORKING POC
by WackyH4cker, h00die · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/http/strapi_3_password_reset.rb
Nuclei Templates (1)
strapi CMS <3.0.0-beta.17.5 - Admin Password Reset
CRITICALby idealphase
Scores
CVSS v3
9.8
EPSS
0.9405
EPSS Percentile
99.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
VulnCheck KEV
2023-03-21
CWE
CWE-640
Status
published
Products (2)
npm/strapi
0 - 3.0.0-beta.17.5npm
strapi/strapi
3.0.0 alpha10.1 (49 CPE variants)
Published
Nov 07, 2019
Tracked Since
Feb 18, 2026