← back
CVE-2024-24621criticalCWE-697

Softaculous Webuzo Authentication Bypass

28Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 9.8epss 1.2%
exploitation probability
1.2%top 36% of all CVEs
observed exploitation
nono source reports it
Softaculous Webuzo contains an authentication bypass vulnerability through the password reset functionality. Remote, anonymous attackers can exploit this vulnerability to gain full server access as the root user.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
Softaculous · Webuzo