SAS Drug Development (SDD) before 32DRG02 mishandles...
High severity
Unreviewed
Published
Apr 21, 2022
to the GitHub Advisory Database
•
Updated Apr 3, 2024
Description
Published by the National Vulnerability Database
Jul 31, 2019
Published to the GitHub Advisory Database
Apr 21, 2022
Last updated
Apr 3, 2024
SAS Drug Development (SDD) before 32DRG02 mishandles logout actions, which allows a user (who was previously logged in) to access resources by pressing a back or forward button in a web browser.
References