MFA Bypass Vulnerability in TOTVS Framework by TOTVS
CVE-2024-55210
9.8CRITICAL
What is CVE-2024-55210?
A security issue in the TOTVS Framework (Linha Protheus) version 12.1.2310 allows attackers to circumvent multi-factor authentication protections by sending specially crafted websocket messages. This enables unauthorized access to sensitive areas of the application, posing significant risks to user security and data integrity.