Authentication Bypass by Capture-replay vulnerability in Drupal One Time Password allows Remote Services with Stolen Credentials.This issue affects One Time Password: from 0.0.0 before 1.3.0.
References
Link | Resource |
---|---|
https://www.drupal.org/sa-contrib-2025-063 | Vendor Advisory |
Configurations
History
10 Jun 2025, 14:28
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.drupal.org/sa-contrib-2025-063 - Vendor Advisory | |
Summary |
|
|
CPE | cpe:2.3:a:one_time_password_project:one_time_password:*:*:*:*:*:drupal:*:* | |
First Time |
One Time Password Project
One Time Password Project one Time Password |
21 May 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-21 17:15
Updated : 2025-06-10 14:28
NVD link : CVE-2025-48012
Mitre link : CVE-2025-48012
CVE.ORG link : CVE-2025-48012
JSON object : View
Products Affected
one_time_password_project
- one_time_password
CWE
CWE-294
Authentication Bypass by Capture-replay