CVE-2024-36042

9.8CRITICAL

Silverpeas before 6.3.5 allows authentication bypass by omitting the Password field to AuthenticationServlet, often providing an unauthenticated user with superadmin access.

Veröffentlicht: 6/3/2024Aktualisiert: 5/29/2025

Beschreibung

Silverpeas before 6.3.5 allows authentication bypass by omitting the Password field to AuthenticationServlet, often providing an unauthenticated user with superadmin access.

KI-AnalyseKI-gestützt

Betroffene Produkte

silverpeassilverpeas

Referenzen