CVE-2022-21142: Critical severity a-blog cms vulnerability
Authentication bypass vulnerability in a-blog cms Ver.2.8.x series versions prior to Ver.2.8.74, Ver.2.9.x series versions prior to Ver.2.9.39, Ver.2.10.x series versions prior to Ver.2.10.43, and Ver.2.11.x series versions prior to Ver.2.11.41 allows a remote unauthenticated attacker to bypass authentication under the specific condition.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-21142?
CVE-2022-21142 is classified as a critical vulnerability due to its potential for remote authentication bypass.
How do I fix CVE-2022-21142?
To fix CVE-2022-21142, update your a-blog cms software to version 2.8.74 or later, 2.9.39 or later, 2.10.43 or later, or 2.11.41 or later.
Who is affected by CVE-2022-21142?
CVE-2022-21142 affects all users of a-blog cms versions prior to the specified secure releases in the 2.8.x, 2.9.x, 2.10.x, and 2.11.x series.
What type of vulnerability is CVE-2022-21142?
CVE-2022-21142 is an authentication bypass vulnerability that allows remote unauthenticated attackers to access restricted functions.
Can CVE-2022-21142 be exploited by unauthenticated users?
Yes, CVE-2022-21142 can be exploited by remote unauthenticated users to bypass authentication mechanisms.