VYPR
Critical severity9.1NVD Advisory· Published Nov 3, 2022· Updated Jun 17, 2026

CVE-2022-38168

CVE-2022-38168

Description

Broken Access Control in User Authentication in Avaya Scopia Pathfinder 10 and 20 PTS version 8.3.7.0.4 allows remote unauthenticated attackers to bypass the login page, access sensitive information, and reset user passwords via URL modification.

Affected products

4

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.