Fiche vulnérabilité
CVE-2026-16647 : faille moyenne zyxware disable login page (CVSS 4.1)
Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Disable Login Page allows Functionality Bypass. This issue affects Disable Login Page versions: from 0.0.0 to 1.1.4.
En bref
- Sévérité
- Moyenne (CVSS 4.1)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:N/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 2 sept. 2026
- Dernière mise à jour
- 8 sept. 2026
Produits concernés
- zyxware disable login page