Global RADAR BSA Radar 1.6.7234.24750 and earlier lacks valid authorization controls in multiple functions. This can allow for manipulation and takeover of user accounts if successfully exploited. The following vulnerable functions are exposed: ChangePassword, SaveUserProfile, and GetUser.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-06-22T21:48:58
Updated: 2024-08-04T13:00:52.014Z
Reserved: 2020-06-21T00:00:00
Link: CVE-2020-14944
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-06-22T22:15:12.883
Modified: 2022-05-03T13:59:28.573
Link: CVE-2020-14944
Redhat
No data.