2005-07-17 04:00:00
mitre
PUBLISHED
WebEOC before 6.0.2 does not properly check user authorization, which allows remote attackers to gain privileges via a direct request to a resource.