Security Advisory

CVE-2013-0258

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-03-27 21:00:00
Last updated 2024-09-16 22:09:36
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The Google Authenticator login (ga_login) module 7.x before 7.x-1.3 for Drupal, when multi-factor authentication is enabled, allows remote attackers to bypass authentication for accounts without an associated Google Authenticator token by logging in with the username.