Security Advisory

CVE-2013-7292

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-01-13 15:00:00
Last updated 2024-09-17 04:04:09
Assigner mitre
State PUBLISHED

Description

VASCO IDENTIKEY Authentication Server (IAS) 3.4.x allows remote authenticated users to bypass Active Directory (AD) authentication by entering only a DIGIPASS one-time password, instead of the intended combination of this one-time password and a multiple-time AD password.