Back to search
CVE-2010-0550
Published: Feb 4, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
admin.htm in Geo++ GNCASTER 1.4.0.7 and earlier does not properly enforce HTTP Digest Authentication, which allows remote authenticated users to use HTTP Basic Authentication, bypassing intended server policy.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20100127 [RT-SA-2010-003] Geo++(R) GNCASTER: Faulty implementation of HTTPDigest Authentication
mailing-list
x_refsource_BUGTRAQ
gncaster-httpbasic-weak-security(55976)
vdb-entry
x_refsource_XF
62013
vdb-entry
x_refsource_OSVDB
38323
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now