← Back

CVE-2024-1403

nvd nist
Published: Feb 27, 2024Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

In OpenEdge Authentication Gateway and AdminServer prior to 11.7.19, 12.2.14, 12.8.1 on all platforms supported by the OpenEdge product, an authentication bypass vulnerability has been identified.  The vulnerability is a bypass to authentication based on a failure to properly handle username and password. Certain unexpected content passed into the credentials can lead to unauthorized access without proper authentication.  

Affected (3)

Products: Progress: Openedge
1 product
Openedge
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Progress
Before 11.7.19
From 11.8 to 12.2.14
From 12.3 to 12.8.1

References (4)

Timeline

No history available yet.