Description
Tomahawk auth timing attack due to usage of `strcmp` has been identified in Hiawatha webserver version 11.7 which allows a local attacker to access the management client.
Remediation
References
Related Vulnerabilities
WordPress 5.8 Multiple Vulnerabilities (5.8)
MySQL CVE-2015-0507 Vulnerability (CVE-2015-0507)
WordPress Plugin Premmerce Variation Swatches for WooCommerce Security Bypass (1.0)
WordPress Plugin WP Maps-Display Google Maps Perfectly with Ease SQL Injection (4.1.3)
Liferay Portal Insecure Default Initialization of Resource Vulnerability (CVE-2024-26267)