The application is vulnerable to an unauthenticated parameter
manipulation that allows an attacker to set the credentials to blank
giving her access to the admin panel. Also vulnerable to account
takeover and arbitrary password change.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-04-18 22:15
Updated : 2024-05-28 17:15
NVD link : CVE-2024-22179
Mitre link : CVE-2024-22179
CVE.ORG link : CVE-2024-22179
JSON object : View
Products Affected
No product.
CWE
CWE-302
Authentication Bypass by Assumed-Immutable Data