漏洞情报聚合

CVE-2026-78863 - A vulnerability was found in liketrek TREK up to 3.0.22. Impacted is the function loginUser of the file server/src/services/authService.ts of the component Pre-2FA mfa_token Handler. The manipulation results in improper authentication. The attack may be performed from remote. Upgrading to version 3.1.0 is recommended to address this issue. Upgrading the affected component is recommended. - 漏洞详情

漏洞编号:CVE-2026-78863

风险等级:中危

漏洞来源:CVE

CVE 编号:CVE-2026-78863

CNNVD 编号:-

厂商/产品:- / -

影响范围:-

CWE:CWE-287

发布/更新时间:2026-08-25 / 2026-08-27

漏洞描述

A vulnerability was found in liketrek TREK up to 3.0.22. Impacted is the function loginUser of the file server/src/services/authService.ts of the component Pre-2FA mfa_token Handler. The manipulation results in improper authentication. The attack may be performed from remote. Upgrading to version 3.1.0 is recommended to address this issue. Upgrading the affected component is recommended.

相关链接

相关漏洞

« 返回首页