CVE-2013-7292

Publication date

2014-01-13 15:00:00

Family

mitre

State

PUBLISHED

Description

VASCO IDENTIKEY Authentication Server (IAS) 3.4.x allows remote authenticated users to bypass Active Directory (AD) authentication by entering only a DIGIPASS one-time password, instead of the intended combination of this one-time password and a multiple-time AD password.