Vulnerabilities > Alayacare

DATE CVE VULNERABILITY TITLE RISK
2024-02-16 CVE-2023-6451 Improper Authentication vulnerability in Alayacare Procura
Publicly known cryptographic machine key in AlayaCare's Procura Portal before 9.0.1.2 allows attackers to forge their own authentication cookies and bypass the application's authentication mechanisms.
network
low complexity
alayacare CWE-287
7.5