← Zurück zur CVE-Suche

CVE-2026-40177

Ajenti

Beschreibung

ajenti.plugin.core defines all necessary core elements to allow Ajenti to run properly. Prior to 0.112, if the 2FA was activated, it was possible to bypass the password authentication This vulnerability is fixed in 0.112.

CVSS 9.3EPSS 0.329%Risiko 0.96
Quelle öffnen
Veröffentlicht
2026-04-10 20:16:22
Betroffene Versionen
<0.112
Typ
Core software
Vektor
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X