Optimus Software Brokerage Automation Authentication Bypass Vulnerability
Vulnerability
An authentication bypass vulnerability has been identified in Optimus Software Brokerage Automation versions prior to 1.1.71. This vulnerability allows attackers to exploit trust in client data, bypass authentication mechanisms, and manipulate registry information. The issue arises from an authorization bypass through user-controlled keys and a weak password recovery process for forgotten passwords.
Impact
Exploitation of this vulnerability allows for authentication bypass, enabling unauthorized access to the application. Additionally, it allows for manipulation of registry information, which could be used to further exploit the application or its users.
Remediation
Users and system administrators are advised to upgrade to version 1.1.71 or later.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
