1 results (0.001 seconds)

CVSS: 9.8EPSS: 55%CPEs: 1EXPL: 6

04 Aug 2014 — Barracuda Web Application Firewall (WAF) 7.8.1.013 allows remote attackers to bypass authentication by leveraging a permanent authentication token obtained from a query string. Barracuda Web Application Firewall (WAF) versión 7.8.1.013, permite a atacantes remotos omitir la autenticación mediante el aprovechamiento un token de autenticación permanente obtenido desde una cadena de consulta. It is possible to re-use a link which includes a non-expiring authentication token in the query string to gain access t... • https://packetstorm.news/files/id/127740 • CWE-613: Insufficient Session Expiration •