Security Advisory

CVE-2022-38168

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-11-03 00:00:00
Last updated 2025-05-02 20:17:37
Assigner mitre
State PUBLISHED

Description

Broken Access Control in User Authentication in Avaya Scopia Pathfinder 10 and 20 PTS version 8.3.7.0.4 allows remote unauthenticated attackers to bypass the login page, access sensitive information, and reset user passwords via URL modification.