CVE-2025-30236 - Shearwater SecurEnvoy SecurAccess TOTP Authentication Bypass
CVE ID : CVE-2025-30236
Published : March 19, 2025, 6:15 a.m. | 3 hours, 9 minutes ago
Description : Shearwater SecurEnvoy SecurAccess Enrol before 9.4.515 allows authentication through only a six-digit TOTP code (skipping a password check) if an HTTP POST request contains a SESSION parameter.
Severity: 8.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : March 19, 2025, 6:15 a.m. | 3 hours, 9 minutes ago
Description : Shearwater SecurEnvoy SecurAccess Enrol before 9.4.515 allows authentication through only a six-digit TOTP code (skipping a password check) if an HTTP POST request contains a SESSION parameter.
Severity: 8.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...