Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-1393

Опубликовано: 20 мар. 2008
Источник: debian
EPSS Низкий

Описание

Plone CMS 3.0.5, and probably other 3.x versions, places a base64 encoded form of the username and password in the __ac cookie for the admin account, which makes it easier for remote attackers to obtain administrative privileges by sniffing the network.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
plone3removedpackage
plone3no-dsalennypackage

EPSS

Процентиль: 82%
0.0167
Низкий

Связанные уязвимости

ubuntu
больше 17 лет назад

Plone CMS 3.0.5, and probably other 3.x versions, places a base64 encoded form of the username and password in the __ac cookie for the admin account, which makes it easier for remote attackers to obtain administrative privileges by sniffing the network.

nvd
больше 17 лет назад

Plone CMS 3.0.5, and probably other 3.x versions, places a base64 encoded form of the username and password in the __ac cookie for the admin account, which makes it easier for remote attackers to obtain administrative privileges by sniffing the network.

github
больше 3 лет назад

Plone Improper Session Management

EPSS

Процентиль: 82%
0.0167
Низкий