Aksis AxOnboard Authorization Bypass Vulnerability Allowing Exploitation of Trusted Identifiers
Vulnerability
A vulnerability allowing authorization bypass through user-controlled keys has been identified in Aksis Computer Services and Consulting Inc. AxOnboard, specifically in versions 3.2.0 prior to 3.3.0. This vulnerability allows the exploitation of trusted identifiers, potentially leading to unauthorized actions or access within the application.
Impact
Exploitation of this vulnerability could allow attackers to bypass authorization mechanisms, enabling them to manipulate trusted identifiers and potentially gain unauthorized access or privileges within the application.
Remediation
Users are advised to upgrade to version 3.3.0 or later.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
