An issue in TOTVS Framework (Linha Protheus) 12.1.2310 allows attackers to bypass multi-factor authentication (MFA) via a crafted websocket message.
References
Link | Resource |
---|---|
https://github.com/c4cnm/CVE-2024-55210/ |
Configurations
No configuration.
History
10 Apr 2025, 19:16
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-290 | |
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
09 Apr 2025, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-04-09 20:15
Updated : 2025-04-11 15:40
NVD link : CVE-2024-55210
Mitre link : CVE-2024-55210
CVE.ORG link : CVE-2024-55210
JSON object : View
Products Affected
No product.
CWE
CWE-290
Authentication Bypass by Spoofing