Security Advisory

CVE-2017-9421

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-05-24 13:00:00
Last updated 2024-08-05 17:02:44
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Authentication Bypass vulnerability in Accellion kiteworks before 2017.01.00 allows remote attackers to execute certain API calls on behalf of a web user using a gathered token via a POST request to /oauth/token.