Security Advisory

CVE-2009-1504

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2009-05-01 17:00:00
Last updated 2024-08-07 05:13:25
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Absolute Form Processor XE 1.5 allows remote attackers to bypass authentication and gain administrative access by setting the xlaAFPadmin cookie to "lvl=1&userid=1."