National Cyber Warfare Foundation (NCWF)

Gitblit Authentication Bypass Vulnerability (CVE-2024-28080)


0 user ratings
2025-09-02 22:53:42
milo
Blue Team (CND)

Overview Recently, NSFOCUS CERT detected that Gitblit issued a security announcement and fixed the Gitblit authentication bypass vulnerability (CVE-2024-28080); Because Gitblit’s SSH service has defects in the public key authentication process, unauthenticated attackers can use the client’s public key to trigger signature verification failure and fall back to password-based authentication to complete SSH login with […]


The post Gitblit Authentication Bypass Vulnerability (CVE-2024-28080) appeared first on NSFOCUS, Inc., a global network and cyber security leader, protects enterprises and carriers from advanced cyber attacks..


The post Gitblit Authentication Bypass Vulnerability (CVE-2024-28080) appeared first on Security Boulevard.



NSFOCUS

Source: Security Boulevard
Source Link: https://securityboulevard.com/2025/09/gitblit-authentication-bypass-vulnerability-cve-2024-28080/?utm_source=rss&utm_medium=rss&utm_campaign=gitblit-authentication-bypass-vulnerability-cve-2024-28080


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.