Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to change user passwords by exploiting weak session management controls. Attackers can reuse IP-bound session identifiers to issue unauthorized requests to the userManager API and modify user credentials without proper authentication.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation7 reference(s) from NVD