Skip to main content

Authentication Bypass by Spoofing

CVE-2024-27349

Severity High
Score 9.1/10

Summary

Authentication Bypass by Spoofing vulnerability in Apache HugeGraph-Server. This issue affects Apache HugeGraph-Server versions 1.0.0 through 1.2.0. Users are recommended to upgrade to version, which fixes the issue. NOTE: This shares same fix commit with CVE-2024-27348.

  • LOW
  • NETWORK
  • HIGH
  • UNCHANGED
  • NONE
  • NONE
  • HIGH
  • NONE

CWE-290 - Authentication Bypass by Spoofing

This attack-focused weakness is caused by improperly implemented authentication schemes that are subject to spoofing attacks.

Advisory Timeline

  • Published