MEDIUM
The single sign-on (SSO) implementation in EasyVista before 2010.1.1.89 allows remote attackers to bypass authentication via a modified url_account parameter, in conjunction with a valid login name in the SSPI_HEADER parameter, to index.php
Published Feb 22, 2012
5.0
MEDIUMCVSS 2.0
EPSS 1.49%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.