Description
The HttpAuth plugin in pGina.Fork through 3.9.9.12 allows authentication bypass when an adversary controls DNS resolution for pginaloginserver.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-15099 | The HttpAuth plugin in pGina.Fork through 3.9.9.12 allows authentication bypass when an adversary controls DNS resolution for pginaloginserver. |
References
History
Thu, 15 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 15 May 2025 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The HttpAuth plugin in pGina.Fork through 3.9.9.12 allows authentication bypass when an adversary controls DNS resolution for pginaloginserver. | |
| Weaknesses | CWE-290 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-15T14:51:34.307Z
Reserved: 2025-05-15T00:00:00.000Z
Link: CVE-2025-48027
Updated: 2025-05-15T14:51:09.732Z
Status : Awaiting Analysis
Published: 2025-05-15T06:15:37.967
Modified: 2025-05-16T14:43:26.160
Link: CVE-2025-48027
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD