PT-2026-27894 · Unknown · Contest Gallery

CVE-2026-25035

·

Publicado

2026-03-25

·

Atualizado

2026-03-30

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Contest Gallery versions prior to 28.1.2.3
Description A flaw exists in Contest Gallery that allows for authentication bypass. This allows for authentication abuse by utilizing an alternate path or channel.
Recommendations Update Contest Gallery to version 28.1.2.3 or later.

Correção

Authentication Bypass Using an Alternate Path or Channel

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-25035

Produtos afetados

Contest Gallery