← Back to CVE List

CVE-2022-2193

Published: 2022-07-19T15:15Z
Last Modified: 2024-11-21T07:00Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Insecure Direct Object Reference vulnerability in HYPR Server before version 6.14.1 allows remote authenticated attackers to add a FIDO2 authenticator to arbitrary accounts via parameter tampering in the Device Manager page. This issue affects: HYPR Server versions prior to 6.14.1. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt