CVE-2019-17082

Insufficiently Protected Credentials vulnerability in OpenText™ AccuRev allows Authentication Bypass. When installed on a Linux or Solaris system the vulnerability could allow anyone who knows a valid AccuRev username can use the AccuRev client to login and gain access to AccuRev source control without knowing the user’s password. This issue affects AccuRev: 2017.1.
CVSS

No CVSS.

Configurations

No configuration.

History

17 Dec 2024, 16:15

Type Values Removed Values Added
CWE CWE-306 CWE-522
Summary
  • (es) La vulnerabilidad de falta de autenticación para funciones críticas en AccuRev for LDAP Integration de OpenText™ permite omitir la autenticación. La vulnerabilidad podría permitir que un nombre de usuario válido de AccuRev obtenga acceso al control de origen de AccuRev sin conocer la contraseña del usuario. Este problema afecta a AccuRev for LDAP Integration: 2017.1.
Summary (en) Missing Authentication for Critical Function vulnerability in OpenText™ AccuRev for LDAP Integration allows Authentication Bypass. The vulnerability could allow  a valid AccuRev username to gain access to AccuRev source control without knowing the user’s password. This issue affects AccuRev for LDAP Integration: 2017.1. (en) Insufficiently Protected Credentials vulnerability in OpenText™ AccuRev allows Authentication Bypass. When installed on a Linux or Solaris system the vulnerability could allow anyone who knows a valid AccuRev username can use the AccuRev client to login and gain access to AccuRev source control without knowing the user’s password. This issue affects AccuRev: 2017.1.

26 Nov 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-26 20:15

Updated : 2024-12-17 16:15


NVD link : CVE-2019-17082

Mitre link : CVE-2019-17082

CVE.ORG link : CVE-2019-17082


JSON object : View

Products Affected

No product.

CWE
CWE-522

Insufficiently Protected Credentials