ZeroHour

CVE-2024-24621

CVSS 3.1
9.8 critical
EPSS
1%p65
Published
()
Modified
Description

Softaculous Webuzo contains an authentication bypass vulnerability through the password reset functionality. Remote, anonymous attackers can exploit this vulnerability to gain full server access as the root user.

Vendors
softaculous
Products
webuzo
Weakness
CWE-697
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.