An issue exists in Apereo Opencast 4.x up to and including 10.x prior to 10.6. It sends system digest credentials during authentication attempts to arbitrary external services in some situations.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apereo opencast |