Ericsson CodeChecker
cpe:2.3:a:ericsson:codechecker:*:*:*:*:*:*:*
- <= 6.27.3
An authentication bypass vulnerability has been identified in CodeChecker versions through 6.27.3. This issue occurs when the URL ends with 'Authentication' and certain function calls are made. Exploiting this vulnerability allows assigning arbitrary permissions to any user existing in CodeChecker.
Exploitation of this vulnerability allows for authentication bypass, enabling unauthorized permission assignments to users within CodeChecker.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.