Authentication Bypass by Primary Weakness in GitHub repository adodb/adodb prior to 5.20.21.
The authentication algorithm is sound, but the implemented mechanism can be bypassed as the result of a separate weakness that is primary to the authentication error.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Link | Tags |
---|---|
https://huntr.dev/bounties/bdf5f216-4499-4225-a737-b28bc6f5801c | issue tracking patch exploit third party advisory |
https://github.com/adodb/adodb/commit/952de6c4273d9b1e91c2b838044f8c2111150c29 | third party advisory patch |
https://lists.debian.org/debian-lts-announce/2022/02/msg00006.html | third party advisory mailing list |
https://www.debian.org/security/2022/dsa-5101 | third party advisory vendor advisory |