CVE-2025-3091

NameCVE-2025-3091
DescriptionAn low privileged remote attacker in possession of the second factor for another user can login as that user without knowledge of the other user`s password.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Notes

NOT-FOR-US: mbCONNECT24

Search for package or bug name: Reporting problems