CVE-2024-50618

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/02/2026
Last modified:
17/02/2026

Description

A Use of Single-factor Authentication vulnerability in the Authentication component of CIPPlanner CIPAce before 9.17 allows attackers to bypass a protection mechanism. When the system is configured to allow login with internal accounts, an attacker can possibly obtain full authentication if the secret in a single-factor authentication scheme gets compromised.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cipplanner:cipace:*:*:*:*:*:*:*:* 9.17 (excluding)