Beveiligingsadvies

CVE-2023-26770

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-10-04 00:00:00
Laatst bijgewerkt 2024-10-04 22:17:08
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

TaskCafe 0.3.2 lacks validation in the Cookie value. Any unauthenticated attacker who knows a registered UserID can change the password of that user.