Beveiligingsadvies

CVE-2023-6451

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-02-16 04:06:17
Laatst bijgewerkt 2024-08-02 08:28:21
Toegewezen door TML
CVSS-score 8.6
Status PUBLISHED

Beschrijving

Publicly known cryptographic machine key in AlayaCare's Procura Portal before 9.0.1.2 allows attackers to forge their own authentication cookies and bypass the application's authentication mechanisms.