Security Advisory
CVE-2022-2193
7.5
HIGH
Vulnerability Description
Insecure Direct Object Reference vulnerability in HYPR Server before version 6.14.1 allows remote authenticated attackers to add a FIDO2 authenticator to arbitrary accounts via parameter tampering in the Device Manager page. This issue affects: HYPR Server versions prior to 6.14.1.
Published Date
July 19, 2022
Official Source
NIST NVD Advisory