Количество 4
Количество 4
CVE-2019-11576
Gitea before 1.8.0 allows 1FA for user accounts that have completed 2FA enrollment. If a user's credentials are known, then an attacker could send them to the API without requiring the 2FA one-time password.
CVE-2019-11576
Gitea before 1.8.0 allows 1FA for user accounts that have completed 2FA enrollment. If a user's credentials are known, then an attacker could send them to the API without requiring the 2FA one-time password.
CVE-2019-11576
Gitea before 1.8.0 allows 1FA for user accounts that have completed 2F ...
GHSA-3393-r4p5-vhqh
Gitea Allows 1FA Even for 2FA-Enrolled Accounts
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-11576 Gitea before 1.8.0 allows 1FA for user accounts that have completed 2FA enrollment. If a user's credentials are known, then an attacker could send them to the API without requiring the 2FA one-time password. | CVSS3: 9.8 | 0% Низкий | почти 7 лет назад | |
CVE-2019-11576 Gitea before 1.8.0 allows 1FA for user accounts that have completed 2FA enrollment. If a user's credentials are known, then an attacker could send them to the API without requiring the 2FA one-time password. | CVSS3: 9.8 | 0% Низкий | почти 7 лет назад | |
CVE-2019-11576 Gitea before 1.8.0 allows 1FA for user accounts that have completed 2F ... | CVSS3: 9.8 | 0% Низкий | почти 7 лет назад | |
GHSA-3393-r4p5-vhqh Gitea Allows 1FA Even for 2FA-Enrolled Accounts | CVSS3: 9.8 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу