Lucene search

K
cvelistMitreCVELIST:CVE-2018-8715
HistoryMar 14, 2018 - 8:00 p.m.

CVE-2018-8715

2018-03-1420:00:00
mitre
www.cve.org
14

AI Score

8.2

Confidence

High

EPSS

0.009

Percentile

83.0%

The Embedthis HTTP library, and Appweb versions before 7.0.3, have a logic flaw related to the authCondition function in http/httpLib.c. With a forged HTTP request, it is possible to bypass authentication for the form and digest login types.

AI Score

8.2

Confidence

High

EPSS

0.009

Percentile

83.0%