logo

Full Disclosure: JitBit Helpdesk Authentication Bypass 0-Day

ID: f2d361ee-d482-5d28-a812-f3e3f2770b68

STIX ID: report--f2d361ee-d482-5d28-a812-f3e3f2770b68

Feed Name: TrustedSec blog

Threat Score
70/100

Date Published: 2025-03-19

Date Updated: 2026-05-01

...
...

This report describes an authentication bypass in JitBit Help Desk Software v8.9.11: the password-reset "AutoLogin" link includes a userHash based on an application shared secret that is generated using System.Random with an Environment.TickCount seed. An attacker can brute-force the RNG seed (2^32 space) to recover the shared secret, compute valid userHash values (including a non-expiring variant), and automatically authenticate as any user (including admin). The author provides a PoC and recommends replacing the generated shared secret with a securely produced value as a short-term mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.