** UNSUPPPORTED WHEN ASSIGNED **Broken Access Control in...
Critical severity
Unreviewed
Published
Nov 4, 2022
to the GitHub Advisory Database
•
Updated Jan 29, 2023
Description
Published by the National Vulnerability Database
Nov 3, 2022
Published to the GitHub Advisory Database
Nov 4, 2022
Last updated
Jan 29, 2023
** UNSUPPPORTED WHEN ASSIGNED **Broken Access Control in User Authentication in Avaya Scopia Pathfinder 10 and 20 PTS version 8.3.7.0.4 allows remote unauthenticated attackers to bypass the login page, access sensitive information, and reset user passwords via URL modification.
References