CVE-2022-2368: Authentication Bypass by Spoofing in microweber/microweber
Published Jul 11, 2022
·Updated
Authentication Bypass by Spoofing in GitHub repository microweber/microweber prior to 1.2.20.
Affected Software
1 affected component
Microweber Microweber<1.2.20
Remediation
Event History
Jul 11, 2022
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-2368?
The severity of CVE-2022-2368 is critical with a CVSS score of 9.8.
2
What is the affected software version of CVE-2022-2368?
The affected software version of CVE-2022-2368 is Microweber prior to 1.2.20.
3
How can the CVE-2022-2368 vulnerability be exploited?
The CVE-2022-2368 vulnerability can be exploited by an attacker to bypass authentication through spoofing.
4
Is there a fix available for CVE-2022-2368?
Yes, a fix for CVE-2022-2368 is available in version 1.2.20 of Microweber.
5
Where can I find more information about CVE-2022-2368?
You can find more information about CVE-2022-2368 on GitHub at https://github.com/microweber/microweber/commit/53c000ccd5602536e28b15d9630eb8261b04a302 and on Huntr at https://huntr.dev/bounties/a9595eda-a5e0-4717-8d64-b445ef83f452.