Vulnerabilities > Mitre > Caldera

DATE CVE VULNERABILITY TITLE RISK
2020-03-22 CVE-2020-10807 Authentication Bypass by Spoofing vulnerability in Mitre Caldera
auth_svc in Caldera before 2.6.5 allows authentication bypass (for REST API requests) via a forged "localhost" string in the HTTP Host header.
network
low complexity
mitre CWE-290
5.3