CVE-2024-36042
03.06.2024, 06:15
Silverpeas before 6.3.5 allows authentication bypass by omitting the Password field to AuthenticationServlet, often providing an unauthenticated user with superadmin access.Enginsight
| Vendor | Product | Version |
|---|---|---|
| silverpeas | silverpeas | 𝑥 < 6.3.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration