
🚨 CVE-2024-8943: LatePoint <= 5.0.12 - Authenticat... LatePoint's booking flow lets you auth bypass with just a user ID when WordPress integration is enabled - admin takeover... https://zerodaysignal.com/vulnerability/CVE-2024-8943 #netsec #vulnerability #CVE #sysadmin #zeroday
Post summary
LatePoint version 5.0.12 or earlier permits authentication bypass through its booking flow when WordPress integration is enabled, potentially allowing an attacker to take over an admin account.

