Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
google authenticator login project ga login 7.x-1.0 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-0258
The Google Authenticator login (ga_login) module 7.x prior to 7.x-1.3 for Drupal, when multi-factor authentication is enabled, allows remote malicious users to bypass authentication for accounts without an associated Google Authenticator token by logging in with the username.
Google Authenticator Login Project Ga Login 7.x-1.0
Google Authenticator Login Project Ga Login 7.x-1.1
Google Authenticator Login Project Ga Login 7.x-1.2
NA
CVE-2013-4177
The Google Authenticator login module 6.x-1.x prior to 6.x-1.2 and 7.x-1.x prior to 7.x-1.4 for Drupal does not properly identify user account names, which might allow remote malicious users to bypass the two-factor authentication requirement via unspecified vectors.
Google Authenticator Login Project Ga Login 6.x-1.0
Google Authenticator Login Project Ga Login 6.x-1.1
Google Authenticator Login Project Ga Login 6.x-1.x
Google Authenticator Login Project Ga Login 7.x-1.0
Google Authenticator Login Project Ga Login 7.x-1.1
Google Authenticator Login Project Ga Login 7.x-1.2
Google Authenticator Login Project Ga Login 7.x-1.3
NA
CVE-2013-4178
The Google Authenticator login module 6.x-1.x prior to 6.x-1.2 and 7.x-1.x prior to 7.x-1.4 for Drupal allows remote malicious users to obtain access by replaying the username, password, and one-time password (OTP).
Google Authenticator Login Project Ga Login 6.x-1.0
Google Authenticator Login Project Ga Login 6.x-1.1
Google Authenticator Login Project Ga Login 6.x-1.x
Google Authenticator Login Project Ga Login 7.x-1.0
Google Authenticator Login Project Ga Login 7.x-1.1
Google Authenticator Login Project Ga Login 7.x-1.2
Google Authenticator Login Project Ga Login 7.x-1.3
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2018-25103
CVE-2024-36279
CVE-2024-38457
elevation of privilege
CVE-2024-27801
CVE-2024-30103
NULL pointer dereference
CVE-2024-6057
XML injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started