Search Results (1 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2020-36968 1 Tildeslash 2 M\/monit, Monit 2026-02-03 6.5 Medium
M/Monit 3.7.4 contains an authentication vulnerability that allows authenticated attackers to retrieve user password hashes through an administrative API endpoint. Attackers can send requests to the /api/1/admin/users/list and /api/1/admin/users/get endpoints to extract MD5 password hashes for all users.