Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:12577
HistoryJan 15, 2019 - 9:19 a.m.

Authentication Bypass

2019-01-1509:19:00
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.014 Low

EPSS

Percentile

86.5%

httpd is vulnerable to authentication bypass attacks. The vulnerability exists as the use of the ap_get_basic_auth_pw() by third-party modules outside of the authentication phase may lead to authentication requirements being bypassed.

References