Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j87h-xgjx-cfhm

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A Two-Factor Authentication Bypass Vulnerability exists in BS-Client Private Client 2.4 and 2.5 via an XML request that neglects the use of ADPswID and AD parameters, which could let a malicious user access privileged function.

A Two-Factor Authentication Bypass Vulnerability exists in BS-Client Private Client 2.4 and 2.5 via an XML request that neglects the use of ADPswID and AD parameters, which could let a malicious user access privileged function.

EPSS

Процентиль: 51%
0.00282
Низкий

Связанные уязвимости

CVSS3: 9.1
nvd
почти 6 лет назад

A Two-Factor Authentication Bypass Vulnerability exists in BS-Client Private Client 2.4 and 2.5 via an XML request that neglects the use of ADPswID and AD parameters, which could let a malicious user access privileged function.

EPSS

Процентиль: 51%
0.00282
Низкий