PT-2023-10130 · Holdennb · Collabcal

CVE-2014-125060

·

Publicado

2023-01-07

·

Atualizado

2024-05-17

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions holdennb CollabCal (affected versions not specified)
Description A critical issue was found in holdennb CollabCal, affecting the handleGet function of the calenderServer.cpp file. This leads to improper authentication and can be exploited remotely.
Recommendations To fix this issue, it is recommended to apply a patch, specifically the one identified as b80f6d1893607c99e5113967592417d0fe310ce6. As a temporary workaround, consider disabling the handleGet function until a patch is available.

Correção

Improper Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-125060

Produtos afetados

Collabcal