Severity
Medium
Analysis Summary
Apache Shiro could allow a remote attacker to bypass security restrictions, caused by improper authentication validation. By sending a specially-crafted HTTP request, an attacker could exploit this vulnerability to bypass access restrictions.
Impact
Security Bypass
Affected Vendors
Apache
Affected Products
Apache Shiro 1.5.2
Remediation
Upgrade to the latest version of Apache Shiro (1.6.0 or later).