CVE-2018-12090 | LAMS up to 3.0 forgotPasswordChange.jsp?key GET Parameter Reflected cross site scripting (EDB-45153 / ID 13225)
A vulnerability classified as problematic has been found in LAMS up to 3.0. This affects an unknown part of the file forgotPasswordChange.jsp?key. The manipulation as part of GET Parameter leads to cross site scripting (Reflected).
This vulnerability is uniquely identified as CVE-2018-12090. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.