Lucene search

K
nvd[email protected]NVD:CVE-2024-25065
HistoryFeb 29, 2024 - 1:44 a.m.

CVE-2024-25065

2024-02-2901:44:14
CWE-22
web.nvd.nist.gov
apache ofbiz
path traversal
authentication bypass
upgrade
version 18.12.12

6.7 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.3%

Possible path traversal in Apache OFBiz allowing authentication bypass.
Users are recommended to upgrade to version 18.12.12, that fixes the issue.

6.7 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.3%

Related for NVD:CVE-2024-25065