CVE-2020-10807
22.03.2020, 16:15
auth_svc in Caldera before 2.6.5 allows authentication bypass (for REST API requests) via a forged "localhost" string in the HTTP Host header.Enginsight
Vendor | Product | Version |
---|---|---|
mitre | caldera | 𝑥 < 2.6.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References