vendor:
Boa
by:
Unknown
7.5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: Boa
Affected Version From: 0.93.15
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: boa
Platforms Tested:
Unknown
Boa Authentication Bypass Vulnerability
Boa is prone to an authentication-bypass vulnerability because the application fails to ensure that passwords are not overwritten by specially crafted HTTP Requests. An attacker can exploit this issue to gain unauthorized access to the affected application. This may lead to other attacks.
Mitigation:
Unknown