An issue in the component SuperUserSetuserModuleFrontController:init() of idnovate superuser before v2.4.2 allows attackers to bypass authentication via a crafted HTTP call.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-10-31T00:00:00
Updated: 2024-09-05T19:55:34.611Z
Reserved: 2023-10-16T00:00:00
Link: CVE-2023-45899
Vulnrichment
Updated: 2024-08-02T20:29:32.574Z
NVD
Status : Analyzed
Published: 2023-10-31T02:15:07.957
Modified: 2023-11-08T16:54:12.307
Link: CVE-2023-45899
Redhat
No data.