CVE-2024-29011: High severity GMS GMS vulnerability
Published May 1, 2024
·Updated
Use of hard-coded password in the GMS ECM endpoint leading to authentication bypass vulnerability.
This issue affects GMS: 9.3.4 and earlier versions.
Affected Software
1 affected component
GMS GMS<=9.3.4
Event History
May 1, 2024
CVE Published
via MITRE·06:19 PM
Data Sourced
via MITRE·06:19 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-29011?
CVE-2024-29011 is considered a critical severity vulnerability due to its impact on authentication bypass.
2
How do I fix CVE-2024-29011?
To fix CVE-2024-29011, upgrade to GMS version 9.3.5 or later, which addresses the hard-coded password issue.
3
Which versions of GMS are affected by CVE-2024-29011?
CVE-2024-29011 affects GMS versions 9.3.4 and earlier.
4
What impact does CVE-2024-29011 have on security?
CVE-2024-29011 allows attackers to bypass authentication, potentially compromising system integrity.
5
Are there any known exploits for CVE-2024-29011?
As of now, specific exploits for CVE-2024-29011 have not been publicly disclosed.