Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-8686

Опубликовано: 19 сент. 2017
Источник: debian
EPSS Средний

Описание

CodeIgniter before 2.2.0 makes it easier for attackers to decode session cookies by leveraging fallback to a custom XOR-based encryption scheme when the Mcrypt extension for PHP is not available.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
codeigniteritppackage

EPSS

Процентиль: 97%
0.34041
Средний

Связанные уязвимости

CVSS3: 9.8
nvd
больше 8 лет назад

CodeIgniter before 2.2.0 makes it easier for attackers to decode session cookies by leveraging fallback to a custom XOR-based encryption scheme when the Mcrypt extension for PHP is not available.

CVSS3: 9.8
github
почти 4 года назад

CodeIgniter before 2.2.0 makes it easier for attackers to decode session cookies by leveraging fallback to a custom XOR-based encryption scheme when the Mcrypt extension for PHP is not available.

EPSS

Процентиль: 97%
0.34041
Средний