TestLink Unspecified Authentication Bypass Vulnerability
BID:26439
Info
TestLink Unspecified Authentication Bypass Vulnerability
| Bugtraq ID: | 26439 |
| Class: | Access Validation Error |
| CVE: |
CVE-2007-6006 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 14 2007 12:00AM |
| Updated: | Nov 23 2007 08:54PM |
| Credit: | The vendor disclosed this issue. |
| Vulnerable: |
TestLink TestLink 1.7 |
| Not Vulnerable: |
TestLink TestLink 1.7.1 |
Discussion
TestLink Unspecified Authentication Bypass Vulnerability
TestLink is prone to an unspecified authentication-bypass vulnerability.
An attacker can exploit this issue to gain unauthorized access to the application.
This issue affects versions prior to TestLink 1.7.1.
TestLink is prone to an unspecified authentication-bypass vulnerability.
An attacker can exploit this issue to gain unauthorized access to the application.
This issue affects versions prior to TestLink 1.7.1.
Exploit / POC
TestLink Unspecified Authentication Bypass Vulnerability
Attackers can likely exploit this issue via a browser, but this has not been confirmed.
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Attackers can likely exploit this issue via a browser, but this has not been confirmed.
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Solution / Fix
References
TestLink Unspecified Authentication Bypass Vulnerability
References:
References:
- TestLink 1.7.1 Release Notes (TestLink)
- TestLink Homepage (TestLink)