First published: Mon Dec 19 2005(Updated: )
The login page in Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions before 6 allows remote attackers to bypass authentication and gain privileges as other users via a modified user_id parameter and a "/" in the encoded_pw parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Blackboard Academic Suite | =6.2.3.23 | |
Blackboard Academic Suite | ||
Blackboard Academic Suite | =6.3.1.424 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.