← Back

CVE-2024-5322

nvd nist
Published: Jul 1, 2024Modified: Jun 17, 2026

JSON object

Loading...
9.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Exploitability: 3.9 / Impact: 5.2
Source: a5532a13-c4dd-4202-bef1-e0b8f2f8d12b (Secondary)

Description

The N-central server is vulnerable to session rebinding of already authenticated users when using Entra SSO, which can lead to authentication bypass. This vulnerability is present in all Entra-supported deployments of N-central prior to 2024.3.

Affected (1)

Products: N Able: N Central
1 product
N Central
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 2024.3

Timeline

No history available yet.