CVE-2017-17097 | gps-server.net GPS Tracking Software 2.x Password Reset fn_connect.php password recovery (EDB-43431)
A vulnerability labeled as critical has been found in gps-server.net GPS Tracking Software 2.x. This vulnerability affects unknown code of the file fn_connect.php of the component Password Reset. Executing manipulation can lead to weak password recovery.
This vulnerability appears as CVE-2017-17097. The attack may be performed from remote. In addition, an exploit is available.