CVE-2022-25510

Publication date

2022-03-10 23:35:40

Family

mitre

State

PUBLISHED

Description

FreeTAKServer 1.9.8 contains a hardcoded Flask secret key which allows attackers to create crafted cookies to bypass authentication or escalate privileges.