CVE-2022-24083: Critical severity pega infinity vulnerability
Published Jul 25, 2022
·Updated
Password authentication bypass vulnerability for local accounts can be used to bypass local authentication checks.
Affected Software
1 affected component
PEGA Infinity>=7.3.1<=8.7.2
Event History
Jul 25, 2022
CVE Published
via MITRE·04:07 PM
Data Sourced
via MITRE·04:07 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-24083?
The severity of CVE-2022-24083 is critical.
2
How does CVE-2022-24083 impact Pega Infinity?
CVE-2022-24083 allows for password authentication bypass for local accounts, which can be used to bypass local authentication checks on Pega Infinity.
3
How can I fix CVE-2022-24083?
To fix CVE-2022-24083, apply the hotfix provided by Pega and follow their recommended mitigation steps.
4
Is CVE-2022-24083 a bypass vulnerability?
Yes, CVE-2022-24083 is a password authentication bypass vulnerability for local accounts.
5
Where can I find more information about CVE-2022-24083?
You can find more information about CVE-2022-24083 in the Pega Security Advisory and Hotfix Matrix document available on the Pega support website.