Description
Episerver CMS is a ASP.NET web content management system and digital marketing suite.
Ektron CMS 9.20 SP2 (and older versions) allows remote attackers to access administrative pages such as (/WorkArea/activateuser.aspx) without authentication by faking the Referer HTTP header.
Remediation
Upgrade to the latest version of Ektorn CMS. This vulnerability was patched with EKTR-508 (Security enhancement for re-enabling a user).
References
Related Vulnerabilities
WordPress Plugin WP Mega Menu Security Bypass (1.3.9)
WordPress Plugin Dropshix Security Bypass (4.0.13)
WordPress Plugin Countdown Block Security Bypass (1.1.1)
WordPress Plugin Woocommerce User Email Verification Security Bypass (3.3.0)
WordPress Plugin WP Private Content Plus Security Bypass (1.31)