Security Advisory

CVE-2024-1403

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-27 15:39:54
Last updated 2024-08-12 19:27:43
Assigner ProgressSoftware
State PUBLISHED

Description

In OpenEdge Authentication Gateway and AdminServer prior to 11.7.19, 12.2.14, 12.8.1 on all platforms supported by the OpenEdge product, an authentication bypass vulnerability has been identified.  The vulnerability is a bypass to authentication based on a failure to properly handle username and password. Certain unexpected content passed into the credentials can lead to unauthorized access without proper authentication.