The Artiva Agency Single Sign-On (SSO) implementation in Artiva Workstation 1.3.x before 1.3.9, Artiva Rm 3.1 MR7, Artiva Healthcare 5.2 MR5, and Artiva Architect 3.2 MR5, when the domain-name option is enabled, allows remote attackers to login to arbitrary domain accounts by using the corresponding username on a Windows client machine.
CPE | Name | Operator | Version |
---|---|---|---|
artiva_architect | eq | 3.2 mr5 | |
artiva_healthcare | eq | 5.2 mr5 | |
artiva_rm | eq | 3.1 mr7 | |
artiva_workstation | eq | 1.3.0 |