VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
> Authentication Bypass by Assumed-Immutable Data
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2024-12-31
CVE-2024-12838
The passwordless login mechanism in CGFIDO from Changing Information Technology has an Authentication Bypass vulnerability, allowing remote attackers with regular privileges to send a crafted request to switch to the identity of any user, including administrators.
network
low complexity
CWE-302
8.8
8.8