Joomla
cpe:2.3:a:joomla:joomla!:*:*:*:*:*:*:*
- >= 4.0.0, <= 5.4.5
- >= 6.0.0, <= 6.1.0
A vulnerability in Joomla! Core has been identified, allowing users to bypass two-factor authentication (2FA) checks. This issue arises from insufficient state checks that incorrectly reset session states, creating a vector for authentication bypass. The vulnerability affects Joomla! CMS versions 4.0.0 through 5.4.5 and 6.0.0 through 6.1.0.
Exploitation of this vulnerability allows for authentication bypass, enabling users to bypass two-factor authentication checks.
Users are advised to upgrade to Joomla! CMS version 5.4.6 or 6.1.1.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.