CVE-2018-8715
23Vexday Risk Score
Corrige pronto. Ella tiene exploit funcional público.
ssvc Attendepss 23%
probabilidad de explotación
23%top 2% de las CVE
explotación observada
noninguna fuente lo reporta
The Embedthis HTTP library, and Appweb versions before 7.0.3, have a logic flaw related to the authCondition function in http/httpLib.c. With a forged HTTP request, it is possible to bypass authentication for the form and digest login types.
Productos afectados
n/a · n/a