CyberRota Analysis
AI-GeneratedThe Joomdle extension prior to version 3.1.1 has an insecure default configuration that permits unauthorized read and write access to user accounts, including the ability to reset passwords. This vulnerability poses a significant risk to Joomla-based websites, as it can lead to account compromise and unauthorized access to sensitive information. Website administrators using this extension should prioritize updating to the latest version to mitigate potential exploitation.
Original NVD Description
Joomla Extension - joomdle.com - Insecure default configuration allows read/write user account access in Joomdle < 3.1.1 - The default configuration of the extension allowed read access and password reset of CMS accounts.