SalesLogix.Authentication.Bypass

description-logoDescription

It indicates a possible exploit of Authentication Bypass vulnerability in the SalesLogix 6.1 that may allow remote attackers to bypass authentication by modifying the slxweb cookie to set user=Admin, teams=ADMIN!, and usertype=Administrator.

affected-products-logoAffected Products

SalesLogix Corporation SalesLogix 2000.0 and Best Software SalesLogix

Impact logoImpact

Unauthorized access to the server.

recomended-action-logoRecommended Actions

Upgrade to non vulnerable server version.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)