An issue exists in GitStack up to and including 2.3.10. User controlled input is not sufficiently filtered, allowing an unauthenticated malicious user to add a user to the server via the username and password fields to the rest/user/ URI.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
smartmobilesoftware gitstack |