CVE-2010-0550

Geopp Geo++ Gncaster < 1.4.0.7 - Authentication Bypass

Title source: rule

Description

admin.htm in Geo++ GNCASTER 1.4.0.7 and earlier does not properly enforce HTTP Digest Authentication, which allows remote authenticated users to use HTTP Basic Authentication, bypassing intended server policy.

Scores

EPSS 0.0035
EPSS Percentile 57.0%

Classification

CWE
CWE-287
Status draft

Affected Products (2)

geopp/geo\+\+_gncaster < 1.4.0.7
geopp/geo\+\+_gncaster

Timeline

Published Feb 04, 2010
Tracked Since Feb 18, 2026