The HttpAuth plugin in pGina.Fork through 3.9.9.12 allows authentication bypass when an adversary controls DNS resolution for pginaloginserver.
References
Configurations
No configuration.
History
16 May 2025, 14:43
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
15 May 2025, 06:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-15 06:15
Updated : 2025-05-16 14:43
NVD link : CVE-2025-48027
Mitre link : CVE-2025-48027
CVE.ORG link : CVE-2025-48027
JSON object : View
Products Affected
No product.
CWE
CWE-290
Authentication Bypass by Spoofing