Back to search
CVE-2012-2770
Published: Aug 15, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
The Authen::ExternalAuth extension before 0.11 for Best Practical Solutions RT allows remote attackers to obtain a logged-in session via unspecified vectors related to the "URL of a RSS feed of the user."
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
54681
vdb-entry
x_refsource_BID
authenexternalauth-url-sec-bypass(77213)
vdb-entry
x_refsource_XF
50060
third-party-advisory
x_refsource_SECUNIA
[rt-announce] 20120725 Security vulnerabilities in three commonly deployed RT extensions
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now