In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Access Control Bypass vulnerabilities in an interactive lesson.
Start learningUpgrade DIRAC to version 8.0.79, 9.0.22, 9.1.10 or higher.
DIRAC is an interware, meaning a software framework for distributed computing.
Affected versions of this package are vulnerable to Access Control Bypass via the setPilotStatus function and related database operations. An attacker can modify or access unauthorized database records by supplying specially crafted parameters that are not properly escaped, and can manage or delete pilot jobs by exploiting insufficient access controls.