"value":"A CWE-306 \"Missing Authentication for Critical Function\" in maxprofile/setup/routes.lua in Q-Free MaxTime less than or equal to version 2.11.0 allows an unauthenticated remote attacker to enable front panel authentication via crafted HTTP requests."
"value":"Un CWE-306 \"Autenticaci\u00f3n faltante para funci\u00f3n cr\u00edtica\" en maxprofile/setup/routes.lua en Q-Free MaxTime menor o igual a la versi\u00f3n 2.11.0 permite que un atacante remoto no autenticado habilite la autenticaci\u00f3n del panel frontal a trav\u00e9s de solicitudes HTTP manipulado."