PT-2026-27894 · Unknown · Contest Gallery
CVE-2026-25035
·
Publicado
2026-03-25
·
Atualizado
2026-03-30
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Contest Gallery versions prior to 28.1.2.3
Description
A flaw exists in Contest Gallery that allows for authentication bypass. This allows for authentication abuse by utilizing an alternate path or channel.
Recommendations
Update Contest Gallery to version 28.1.2.3 or later.
Correção
Authentication Bypass Using an Alternate Path or Channel
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Contest Gallery