TAAGSOLUTIONS MyTaag Privilege Escalation Vulnerability via Local Storage Manipulation

Vulnerability

A privilege escalation vulnerability has been identified in TAAGSOLUTIONS GmbH MyTaag versions through 2024-11-24. This issue allows a physically proximate attacker to bypass two-factor authentication (2FA) by manipulating the '2fa_authorized' key in the browser's Local Storage. Exploitation involves changing the 2FA authorization status from '0' to '1', thereby gaining unauthorized access to the user's account without completing the 2FA verification process.

Impact

Exploitation of this vulnerability allows attackers to bypass two-factor authentication, gaining unauthorized access to user accounts.

Reproduction

To reproduce this vulnerability, log into a MyTaag account with 2FA enabled. After the initial login with email and password, the '2fa_authorized' Local Storage key will be set to '0', indicating that the second factor has not been authenticated. Instead of entering the verification code, the key can be manually changed to '1'. After reloading the page, the system will grant access as if the 2FA verification was completed.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
4.6
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.