mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 17:21:36 +00:00
25 lines
984 B
JSON
25 lines
984 B
JSON
{
|
|
"id": "CVE-2024-4846",
|
|
"sourceIdentifier": "security@devolutions.net",
|
|
"published": "2024-06-25T13:15:50.120",
|
|
"lastModified": "2024-06-25T18:50:42.040",
|
|
"vulnStatus": "Awaiting Analysis",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Authentication bypass in the 2FA feature in Devolutions Server 2024.1.14.0 and earlier allows an authenticated attacker to authenticate to another user without being asked for the 2FA via another browser tab."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "La omisi\u00f3n de autenticaci\u00f3n en la funci\u00f3n 2FA en Devolutions Server 2024.1.14.0 y versiones anteriores permite a un atacante autenticado autenticarse ante otro usuario sin que se le solicite la 2FA a trav\u00e9s de otra pesta\u00f1a del navegador."
|
|
}
|
|
],
|
|
"metrics": {},
|
|
"references": [
|
|
{
|
|
"url": "https://devolutions.net/security/advisories/DEVO-2024-0009",
|
|
"source": "security@devolutions.net"
|
|
}
|
|
]
|
|
} |