Quantcast
Viewing all articles
Browse latest Browse all 19115

0006825: Authentication bypass in Webinterface

Webserver configuration of Pirhana only limits GET-Requests.<br /> It's possible to bypass authentication to view and modify the configuration.<br /> <br /> Please remove the directives <Limit …> and </Limit> in /etc/sysconfig/ha/conf/httpd.conf

Viewing all articles
Browse latest Browse all 19115

Trending Articles