The login page in Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions before 6 allows remote attackers to bypass authentication and gain privileges as other users via a modified user_id parameter and a "/" in the encoded_pw parameter.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T19:30:21.863Z
Reserved: 2005-12-17T00:00:00Z
Link: CVE-2005-4337

No data.

Status : Deferred
Published: 2005-12-19T03:47:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2005-4337

No data.