Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-27157 – Veritas APTARE versions prior to 10.5 included code that bypassed the nor

Veritas APTARE versions prior to 10.5 included code that bypassed the normal login process when specific authentication credentials were provided to the server. An unauthenticated user could login to the application and gain access to the data and functionality accessible to the targeted user account.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-27157

Reference (s):

  • https://www.veritas.com/content/support/en_US/security/VTS20-006#issue2
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-6594 - Unspecified vulnerability in the Oracle iLearning component in Oracle iLe

2021-current

CVE-2019-8457 - SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-b

2021-current

CVE-2020-12257 - rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because