Description
An issue was discovered in Joomla! 3.2.0 through 3.9.24. Usage of the insecure rand() function within the process of generating the 2FA secret.
Remediation
References
Related Vulnerabilities
Moodle Other Vulnerability (CVE-2015-3175)
WordPress Plugin Membership Simplified Arbitrary File Download (1.58)
Drupal Core 8.5.x Multiple Vulnerabilities (8.5.0 - 8.5.14)
PHP Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2011-0441)
WordPress Plugin WP Learn Manager Cross-Site Scripting (1.1.2)