CVE-2015-8570: Lepide Active Directory Self Service

High severity, CVSS 7.4. EPSS: 1.2% chance of exploitation in the next 30 days.

The password reset functionality in Lepide Active Directory Self Service allows remote authenticated users to change arbitrary domain user passwords via a crafted request.

Affected products

  • Lepide Active Directory Self Service: affected versions not specified

Published 2015-12-15. Last modified 2026-06-17.