Логотип exploitDog
bind:CVE-2021-38618
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-38618

Количество 2

Количество 2

nvd логотип

CVE-2021-38618

больше 4 лет назад

In GFOS Workforce Management 4.8.272.1, the login page of application is prone to authentication bypass, allowing anyone (who knows a user's credentials except the password) to get access to an account. This occurs because of JSESSIONID mismanagement.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-7g52-j5fp-g582

больше 3 лет назад

In GFOS Workforce Management 4.8.272.1, the login page of application is prone to authentication bypass, allowing anyone (who knows a user's credentials except the password) to get access to an account. This occurs because of JSESSIONID mismanagement.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-38618

In GFOS Workforce Management 4.8.272.1, the login page of application is prone to authentication bypass, allowing anyone (who knows a user's credentials except the password) to get access to an account. This occurs because of JSESSIONID mismanagement.

CVSS3: 7.4
0%
Низкий
больше 4 лет назад
github логотип
GHSA-7g52-j5fp-g582

In GFOS Workforce Management 4.8.272.1, the login page of application is prone to authentication bypass, allowing anyone (who knows a user's credentials except the password) to get access to an account. This occurs because of JSESSIONID mismanagement.

CVSS3: 8.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу