Логотип exploitDog
bind:CVE-2024-13061
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-13061

Количество 2

Количество 2

nvd логотип

CVE-2024-13061

около 1 года назад

The Electronic Official Document Management System from 2100 Technology has an Authentication Bypass vulnerability. Although the product enforces an IP whitelist for the API used to query user tokens, unauthenticated remote attackers can still deceive the server to obtain tokens of arbitrary users, which can then be used to log into the system.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2vmj-9h29-92pm

около 1 года назад

The Electronic Official Document Management System from 2100 Technology has an Authentication Bypass vulnerability. Although the product enforces an IP whitelist for the API used to query user tokens, unauthenticated remote attackers can still deceive the server to obtain tokens of arbitrary users, which can then be used to log into the system.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-13061

The Electronic Official Document Management System from 2100 Technology has an Authentication Bypass vulnerability. Although the product enforces an IP whitelist for the API used to query user tokens, unauthenticated remote attackers can still deceive the server to obtain tokens of arbitrary users, which can then be used to log into the system.

CVSS3: 9.8
0%
Низкий
около 1 года назад
github логотип
GHSA-2vmj-9h29-92pm

The Electronic Official Document Management System from 2100 Technology has an Authentication Bypass vulnerability. Although the product enforces an IP whitelist for the API used to query user tokens, unauthenticated remote attackers can still deceive the server to obtain tokens of arbitrary users, which can then be used to log into the system.

CVSS3: 9.8
0%
Низкий
около 1 года назад

Уязвимостей на страницу