Global RADAR BSA Radar 1.6.7234.24750 and earlier lacks valid authorization controls in multiple functions. This can allow for manipulation and takeover of user accounts if successfully exploited. The following vulnerable functions are exposed: ChangePassword, SaveUserProfile, and GetUser.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2020-06-22T21:48:58
Updated: 2024-08-04T13:00:52.014Z
Reserved: 2020-06-21T00:00:00
Link: CVE-2020-14944

No data.

Status : Modified
Published: 2020-06-22T22:15:12.883
Modified: 2024-11-21T05:04:29.653
Link: CVE-2020-14944

No data.