Authentication Bypass Vulnerability in Internet2 Grouper Before 5.6
CVE-2024-39848
9.1CRITICAL
What is CVE-2024-39848?
The vulnerability in Internet2 Grouper allows unauthorized access due to improper handling of LDAP authentication protocols. It specifically affects configurations utilizing the UyY29r password for the M3vwHr account, enabling potential bypass of security measures. This flaw also impacts 'Grouper for Web Services', creating significant security risks for users running older versions.
