Authentication bypass and denial of service (DoS) vulnerabilities in Apple Game Center auth adapter
Vulnerability Description
Improper validation of the Apple certificate URL in the Apple Game Center authentication adapter allows attackers to bypass authentication, making the server vulnerable to DoS attacks. The vulnerability has been fixed by improving the URL validation and adding additional checks of the resource the URL points to before downloading it.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-24901
Credits & Attribution
No credits recorded in the NVD database.
More from parse-community
View All →Affected Vendor
parse-community
View all reports →