Authentication Bypass by Primary Weakness in GitHub repository froxlor/froxlor prior to 2.0.13.
The authentication algorithm is sound, but the implemented mechanism can be bypassed as the result of a separate weakness that is primary to the authentication error.
Link | Tags |
---|---|
https://huntr.dev/bounties/5fe85af4-a667-41a9-a00d-f99e07c5e2f1 | patch third party advisory exploit |
https://github.com/froxlor/froxlor/commit/6777fbf229200f4fd566022e186548391219ab23 | patch |