Unit4 Polska TETA Web (formerly TETA Galactica) 22.62.3.4 does not properly restrict access to the (1) Design Mode and (2) Debug Logger mode modules, which allows remote attackers to gain privileges via crafted "received parameters."
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2015-09-16T18:00:00
Updated: 2015-09-16T18:57:03
Reserved: 2015-01-17T00:00:00
Link: CVE-2015-1173
JSON object: View
NVD Information
Status : Analyzed
Published: 2015-09-16T18:59:01.737
Modified: 2015-09-17T18:43:35.940
Link: CVE-2015-1173
JSON object: View
Redhat Information
No data.
CWE