Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9c75-x9m5-346w

Опубликовано: 26 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Enterprise MFA - TFA for Drupal allows Authentication Bypass.This issue affects Enterprise MFA - TFA for Drupal: from 0.0.0 before 4.8.0, from 5.2.0 before 5.2.1, from 0.0.0 before 5.0., from 0.0.0 before 5.1..

Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Enterprise MFA - TFA for Drupal allows Authentication Bypass.This issue affects Enterprise MFA - TFA for Drupal: from 0.0.0 before 4.8.0, from 5.2.0 before 5.2.1, from 0.0.0 before 5.0., from 0.0.0 before 5.1..

EPSS

Процентиль: 9%
0.00034
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-288

Связанные уязвимости

CVSS3: 4.8
nvd
8 месяцев назад

Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Enterprise MFA - TFA for Drupal allows Authentication Bypass.This issue affects Enterprise MFA - TFA for Drupal: from 0.0.0 before 4.8.0, from 5.2.0 before 5.2.1, from 0.0.0 before 5.0.*, from 0.0.0 before 5.1.*.

EPSS

Процентиль: 9%
0.00034
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-288