Authentication Bypass vulnerability in Accellion kiteworks prior to 2017.01.00 allows remote malicious users to execute certain API calls on behalf of a web user using a gathered token via a POST request to /oauth/token.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
accellion kiteworks |