Apache OFBiz Authentication Bypass Vulnerability
CVE-2024-25065
9.1CRITICAL
What is CVE-2024-25065?
A path traversal vulnerability exists in Apache OFBiz that may allow an attacker to bypass authentication measures. By exploiting this flaw, unauthorized users could gain access to restricted areas of the application. Users are highly encouraged to upgrade to version 18.12.12, which addresses and resolves this security risk effectively.
Affected Version(s)
Apache OFBiz 0 < 18.12.12