Описание
ajenti.plugin.core defines all necessary core elements to allow Ajenti to run properly. Prior to 0.112, if the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. This vulnerability is fixed in 0.112.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.112 (исключая)
cpe:2.3:a:ajenti:ajenti_plugin_core:*:*:*:*:*:*:*:*
EPSS
Процентиль: 14%
0.00232
Низкий
5.9 Medium
CVSS3
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 5.9
debian
4 месяца назад
ajenti.plugin.core defines all necessary core elements to allow Ajenti ...
EPSS
Процентиль: 14%
0.00232
Низкий
5.9 Medium
CVSS3
Дефекты
CWE-287