CVE-2019-18818

CRITICAL EXPLOITED NUCLEI

Strapi CMS Unauthenticated Password Reset

Title source: metasploit

Description

strapi before 3.0.0-beta.17.5 mishandles password resets within packages/strapi-admin/controllers/Auth.js and packages/strapi-plugin-users-permissions/controllers/Auth.js.

Exploits (10)

exploitdb WORKING POC
by WackyH4cker · rubywebappsnodejs
https://www.exploit-db.com/exploits/50716
exploitdb WORKING POC
by David Anglada · pythonwebappsmultiple
https://www.exploit-db.com/exploits/50237
nomisec WORKING POC 3 stars
by guglia001 · remote
https://github.com/guglia001/CVE-2019-18818
nomisec WORKING POC
by abelsrzz · remote
https://github.com/abelsrzz/CVE-2019-18818_CVE-2019-19609
nomisec WORKING POC
by Hackhoven · remote
https://github.com/Hackhoven/Strapi-RCE
nomisec WORKING POC
by hadrian3689 · poc
https://github.com/hadrian3689/strapi_cms_3.0.0-beta.17.7
nomisec WORKING POC
by rasyidfox · remote
https://github.com/rasyidfox/CVE-2019-18818
vulncheck_xdb WORKING POC
remote
https://github.com/glowbase/CVE-2019-19609
vulncheck_xdb WORKING POC
remote
https://github.com/Shadawks/Strapi-CVE-2019-1881
metasploit WORKING POC
by WackyH4cker, h00die · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/http/strapi_3_password_reset.rb

Nuclei Templates (1)

strapi CMS <3.0.0-beta.17.5 - Admin Password Reset
CRITICALby idealphase

Scores

CVSS v3 9.8
EPSS 0.9405
EPSS Percentile 99.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

VulnCheck KEV 2023-03-21
CWE
CWE-640
Status published
Products (2)
npm/strapi 0 - 3.0.0-beta.17.5npm
strapi/strapi 3.0.0 alpha10.1 (49 CPE variants)
Published Nov 07, 2019
Tracked Since Feb 18, 2026