An issue in the component /manage/ of itranswarp v2.19 allows attackers to bypass authentication via a crafted request.
The product requires authentication, but the product has an alternate path or channel that does not require authentication.
Link | Tags |
---|---|
https://github.com/michaelliao/itranswarp/issues/73 | issue tracking third party advisory exploit |