{"id":"CVE-2016-5100","details":"Froxlor before 0.9.35 uses the PHP rand function for random number generation, which makes it easier for remote attackers to guess the password reset token by predicting a value.","aliases":["GHSA-qj6h-m7xc-r2v3"],"modified":"2026-05-17T11:55:11.746914916Z","published":"2017-02-13T18:59:00.627Z","related":["openSUSE-SU-2021:0415-1","openSUSE-SU-2021:0450-1"],"database_specific":{},"references":[{"type":"FIX","url":"https://github.com/Froxlor/Froxlor/commit/da4ec3e1b591de96675817a009e26e05e848a6ba"}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}