vendor:
by:
str0ke
7.5
CVSS
HIGH
Login Bypass
CWE
Product Name:
Affected Version From: 1.2.2005
Affected Version To: 1.2.2005
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2005
Login Bypass vulnerability in version 1.2.5
The exploit allows an attacker to bypass the login process and gain administrative access by using a specially crafted login string. The vulnerability was tested on version 1.2.5.
Mitigation:
Update to a patched version of the software or implement proper input validation and access controls.