CVE-2023-26829: Critical severity gladinet centrestack vulnerability
Published Mar 31, 2023
·Updated
An authentication bypass vulnerability in the Password Reset component of Gladinet CentreStack before 13.5.9808 allows remote attackers to set a new password for any valid user account, without needing the previous known password, resulting in a full authentication bypass.
Affected Software
1 affected component
Gladinet CentreStack<13.5.9808
Event History
Mar 31, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-26829?
CVE-2023-26829 has a high severity level due to its potential for complete authentication bypass.
2
How do I fix CVE-2023-26829?
To fix CVE-2023-26829, upgrade Gladinet CentreStack to version 13.5.9808 or later.
3
What type of vulnerability is CVE-2023-26829?
CVE-2023-26829 is classified as an authentication bypass vulnerability.
4
Who is affected by CVE-2023-26829?
CVE-2023-26829 affects all versions of Gladinet CentreStack prior to 13.5.9808.
5
What can attackers do with CVE-2023-26829?
Attackers can exploit CVE-2023-26829 to reset passwords for any valid user account without prior knowledge of the existing password.