← Späť na vyhľadávanie CVE

CVE-2026-40177

Ajenti

Popis

ajenti.plugin.core defines all necessary core elements to allow Ajenti to run properly. Prior to 0.112, if the 2FA was activated, it was possible to bypass the password authentication This vulnerability is fixed in 0.112.

CVSS 9.3EPSS 0.329%Riziko 0.96
Zobraziť zdroj
Zverejnené
2026-04-10 20:16:22
Dotknuté verzie
<0.112
Typ
Core software
Vektor
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X