CVE-2014-5375

The server in Adaptive Computing Moab before 7.2.9 and 8 before 8.0.0 does not properly validate the message owner matches the submitting user, which allows remote authenticated users to impersonate arbitrary users via the UserId and Owner tags.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adaptivecomputing:moab:*:*:*:*:*:*:*:*
cpe:2.3:a:adaptivecomputing:moab:8.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2014-10-08 19:55

Updated : 2024-02-04 18:35


NVD link : CVE-2014-5375

Mitre link : CVE-2014-5375

CVE.ORG link : CVE-2014-5375


JSON object : View

Products Affected

adaptivecomputing

  • moab
CWE
CWE-20

Improper Input Validation