Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fgxf-657w-ggqj

Опубликовано: 25 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

Incorrect Authorization vulnerability in the protocol communication between the WatchGuard Authentication Gateway (aka Single Sign-On Agent) on Windows and the WatchGuard Single Sign-On Client on Windows and MacOS allows Authentication Bypass.This issue affects the Authentication Gateway: through 12.10.2; Windows Single Sign-On Client: through 12.7; MacOS Single Sign-On Client: through 12.5.4.

Incorrect Authorization vulnerability in the protocol communication between the WatchGuard Authentication Gateway (aka Single Sign-On Agent) on Windows and the WatchGuard Single Sign-On Client on Windows and MacOS allows Authentication Bypass.This issue affects the Authentication Gateway: through 12.10.2; Windows Single Sign-On Client: through 12.7; MacOS Single Sign-On Client: through 12.5.4.

EPSS

Процентиль: 82%
0.01671
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-306
CWE-863

Связанные уязвимости

CVSS3: 9.1
nvd
больше 1 года назад

Incorrect Authorization vulnerability in the protocol communication between the WatchGuard Authentication Gateway (aka Single Sign-On Agent) on Windows and the WatchGuard Single Sign-On Client on Windows and MacOS allows Authentication Bypass.This issue affects the Authentication Gateway: through 12.10.2; Windows Single Sign-On Client: through 12.7; MacOS Single Sign-On Client: through 12.5.4.

CVSS3: 8.6
fstec
больше 1 года назад

Уязвимость программного средства аутентификации WatchGuard Authentication Gateway связанная с недостатками механизма авторизации, позволяющая нарушителю получить дамп памяти

EPSS

Процентиль: 82%
0.01671
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-306
CWE-863