CVE-2024-25065
Possible path traversal in Apache OFBiz allowing authentication bypass.
Users are recommended to upgrade to version 18.1
Possible path traversal in Apache OFBiz allowing authentication bypass. Users are recommended to upgrade to version 18.12.12, that fixes the issue.
CRITICAL · CVSS 9.1
EPSS 0.00808
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0