CVE-2021-26600

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/03/2022
Last modified:
30/03/2022

Description

ImpressCMS before 1.4.3 has plugins/preloads/autologin.php type confusion with resultant Authentication Bypass (!= instead of !==).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:impresscms:impresscms:*:*:*:*:*:*:*:* 1.4.3 (excluding)