Hacker Login
Customer Login
CrowdStream
Account Takeover via Password Reset Token and Insecure Email Change Handling
Account Takeover via Password Reset Token and Insecure Email Change Handling
Disclosed by
David007
Engagement
National Aeronautics and Space Administration (NASA) - Vulnerability Disclosure Program
Disclosed date
24 Jul 2025
5 months ago
Priority
P5
Bugcrowd's VRT priority rating
Status
Informational
This vulnerability is seen as an accepted business risk
Summary by David007
Account Takeover via Password Reset Token and Insecure Email Change Handling
Activity