DataEase.TokenFilter.CVE-2024-56511.Authentication.Bypass
Description
This indicates an attack attempt to exploit an Authentication Bypass Vulnerability in DataEase.
The vulnerability is due to a lack of proper validation of user-supplied data. A remote, unauthenticated attacker could exploit this vulnerability by sending a crafted request to the target server. Successful exploitation could gain control of the affected application.
Affected Products
DataEase prior to 2.10.3
Impact
Security Bypass: Remote attackers can bypass security features of vulnerable systems.
Recommended Actions
Apply the most recent upgrade or patch from the vendor.
https://github.com/dataease/dataease/security/advisories/GHSA-9f69-p73j-m73x
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |