Security Advisory

CVE-2020-10807

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-03-22 15:50:57
Last updated 2024-08-04 11:14:15
Assigner mitre
State PUBLISHED

Description

auth_svc in Caldera before 2.6.5 allows authentication bypass (for REST API requests) via a forged "localhost" string in the HTTP Host header.