CVE-2007-5578

Secureideas Basic Analysis And Security Engine - Authentication Bypass

Title source: rule

Description

Basic Analysis and Security Engine (BASE) before 1.3.8 sends a redirect to the web browser but does not exit, which allows remote attackers to bypass authentication via (1) base_main.php, (2) base_qry_alert.php, and possibly other vectors.

Scores

EPSS 0.0070
EPSS Percentile 71.8%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

secureideas/basic_analysis_and_security_engine

Timeline

Published Oct 18, 2007
Tracked Since Feb 18, 2026