Security Advisory
CVE-2014-9611
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Netsweeper before 4.0.5 allows remote attackers to bypass authentication and create arbitrary accounts and policies via a request to webadmin/nslam/index.php.