GHSA-4w54-wwc9-x62c
CRITICALCVE-2024-36042Silverpeas before 6.3.5 allows authentication bypass by omitting the Password field to AuthenticationServlet, often providing an unauthenticated user with superadmin access.
- Affected
- < 6.3.5
- Fixed in
- 6.3.5
- Weakness
- CWE-288
- Published
- 2024-06-03
- Source
- github