Skip to content
This repository was archived by the owner on Oct 20, 2024. It is now read-only.

incorrect access control vulnerability

High
babelouest published GHSA-xmm3-fjq3-9442 Feb 13, 2022

Package

glewlwyd (C)

Affected versions

< 2.6.1

Patched versions

2.6.1

Description

Impact

Glewlwyd 2.0.0, fixed in 2.6.1 is affected by an incorrect access control vulnerability. One user can attempt to log in as another user without its password.

Patches

Patch has been applied to release 2.6.1

Severity

High

CVE ID

CVE-2021-45379

Weaknesses

No CWEs