Authentication Bypass Vulnerability in Caldera by MITRE
CVE-2020-10807
5.3MEDIUM
What is CVE-2020-10807?
The vulnerability in Caldera allows attackers to bypass authentication mechanisms by exploiting a malformed 'localhost' string in the HTTP Host header. This flaw affects REST API requests, potentially granting unauthorized access to sensitive functionalities of the application. Users of Caldera versions prior to 2.6.5 are at risk, making it critical to upgrade to the latest version to secure against this issue.