9.1
CVSSv3

CVE-2014-4198

Published: 13/02/2020 Updated: 19/02/2020
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

A Two-Factor Authentication Bypass Vulnerability exists in BS-Client Private Client 2.4 and 2.5 via an XML request that neglects the use of ADPswID and AD parameters, which could let a malicious user access privileged function.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

bssys rbs bs-client. retail client 2.4

bssys rbs bs-client. retail client 2.5