NA

CVE-2023-44039

Published: 03/04/2024 Updated: 03/04/2024

Vulnerability Summary

In VeridiumID prior to 3.5.0, the WebAuthn API allows an internal unauthenticated attacker (who can pass enrollment verifications and is allowed to enroll a FIDO key) to register their FIDO authenticator to a victim’s account and consequently take over the account.

Vulnerability Trend