Vulnerabilities > Ubikasec

DATE CVE VULNERABILITY TITLE RISK
2023-03-08 CVE-2023-26261 Injection vulnerability in Ubikasec Waap Cloud and Waap Gateway
In UBIKA WAAP Gateway/Cloud through 6.10, a blind XPath injection leads to an authentication bypass by stealing the session of another connected user.
network
low complexity
ubikasec CWE-74
critical
9.8