Description
Softaculous Webuzo contains an authentication bypass vulnerability through the password reset functionality. Remote, anonymous attackers can exploit this vulnerability to gain full server access as the root user.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-22022 | Softaculous Webuzo contains an authentication bypass vulnerability through the password reset functionality. Remote, anonymous attackers can exploit this vulnerability to gain full server access as the root user. |
References
History
No history.
Status: PUBLISHED
Assigner: XI
Published:
Updated: 2024-08-01T23:28:11.063Z
Reserved: 2024-01-25T23:43:07.962Z
Link: CVE-2024-24621
Updated: 2024-08-01T23:28:11.063Z
Status : Modified
Published: 2024-07-25T22:15:05.230
Modified: 2024-11-21T08:59:29.377
Link: CVE-2024-24621
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD