Authentication Bypass Vulnerability in Netegrity SiteMinder

Authentication Bypass Vulnerability in Netegrity SiteMinder

CVE-2000-0850 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Netegrity SiteMinder before 4.11 allows remote attackers to bypass its authentication mechanism by appending "$/FILENAME.ext" (where ext is .ccc, .class, or .jpg) to the requested URL.

Learn more about our Web Application Penetration Testing UK.