Vulnerabilities > Syracom > Secure Login > 3.1.1.0

DATE CVE VULNERABILITY TITLE RISK
2024-10-10 CVE-2024-48941 Unspecified vulnerability in Syracom Secure Login 3.1.1.0
The Syracom Secure Login (2FA) plugin for Jira, Confluence, and Bitbucket through 3.1.4.5 allows remote attackers to bypass 2FA by interacting with the /rest endpoint of Jira, Confluence, or Bitbucket.
network
low complexity
syracom
5.4
2024-10-10 CVE-2024-48942 Unspecified vulnerability in Syracom Secure Login 3.1.1.0
The Syracom Secure Login (2FA) plugin for Jira, Confluence, and Bitbucket through 3.1.4.5 allows remote attackers to easily brute-force the 2FA PIN via the plugins/servlet/twofactor/public/pinvalidation endpoint.
network
high complexity
syracom
5.9