CVE

Id
54499  
CVE No.
CVE-2012-1256  
Status
Candidate  
Description
The single sign-on (SSO) implementation in EasyVista before 2010.1.1.89 allows remote attackers to bypass authentication via a modified url_account parameter, in conjunction with a valid login name in the SSPI_HEADER parameter, to index.php.  
Phase
Assigned (20120221)  
Votes
None (candidate not yet proposed)  
Comments