CVE Vulnerabilities

CVE-2024-26566

Authentication Bypass Using an Alternate Path or Channel

Published: Mar 07, 2024 | Modified: Apr 30, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An issue in Cute Http File Server v.3.1 allows a remote attacker to escalate privileges via the password verification component.

Weakness

The product requires authentication, but the product has an alternate path or channel that does not require authentication.

Affected Software

Name Vendor Start Version End Version
Cute_http_file_server Iscute 3.1 (including) 3.1 (including)

Potential Mitigations

References