eClass platform < ip.2.5.10.2.1 allows an attacker to use GETS method to request /admin page to bypass the password validation and access…
twcert·CWE-284·Published 2019-07-25