Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22058
HistoryDec 02, 2019 - 7:09 a.m.

Two-Factor Authentication Bypass

2019-12-0207:09:45
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

EPSS

0.002

Percentile

55.9%

wagtail-2fa is vulnerable 2fa bypass. An attacker with knowledge of another user’s Wagtail login credentials is able to bypass the 2FA verification by modifying the URL, and subsequently add a new device and gain full access to the CMS.

EPSS

0.002

Percentile

55.9%

Related for VERACODE:22058