CVE-2023-26829

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/03/2023
Last modified:
18/02/2025

Description

An authentication bypass vulnerability in the Password Reset component of Gladinet CentreStack before 13.5.9808 allows remote attackers to set a new password for any valid user account, without needing the previous known password, resulting in a full authentication bypass.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gladinet:centrestack:*:*:*:*:*:*:*:* 13.5.9808 (excluding)