Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-1007

Опубликовано: 28 фев. 2011
Источник: debian
EPSS Низкий

Описание

Best Practical Solutions RT before 3.8.9 does not perform certain redirect actions upon a login, which allows physically proximate attackers to obtain credentials by resubmitting the login form via the back button of a web browser on an unattended workstation after an RT logout.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
request-tracker3.6removedpackage
request-tracker3.8fixed3.8.10-1package

Примечания

  • A physically proximate attacker can do far more damage anyway

EPSS

Процентиль: 26%
0.00088
Низкий

Связанные уязвимости

ubuntu
почти 15 лет назад

Best Practical Solutions RT before 3.8.9 does not perform certain redirect actions upon a login, which allows physically proximate attackers to obtain credentials by resubmitting the login form via the back button of a web browser on an unattended workstation after an RT logout.

nvd
почти 15 лет назад

Best Practical Solutions RT before 3.8.9 does not perform certain redirect actions upon a login, which allows physically proximate attackers to obtain credentials by resubmitting the login form via the back button of a web browser on an unattended workstation after an RT logout.

github
больше 3 лет назад

Best Practical Solutions RT before 3.8.9 does not perform certain redirect actions upon a login, which allows physically proximate attackers to obtain credentials by resubmitting the login form via the back button of a web browser on an unattended workstation after an RT logout.

EPSS

Процентиль: 26%
0.00088
Низкий