Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-43w7-r28v-f9wx

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Feature Pack for Communications Enabled Applications (CEA) before 1.0.0.1 for IBM WebSphere Application Server 7.0.0.7 uses predictable session values, which allows man-in-the-middle attackers to spoof a collaboration session by guessing the value.

Feature Pack for Communications Enabled Applications (CEA) before 1.0.0.1 for IBM WebSphere Application Server 7.0.0.7 uses predictable session values, which allows man-in-the-middle attackers to spoof a collaboration session by guessing the value.

EPSS

Процентиль: 62%
0.00435
Низкий

Связанные уязвимости

nvd
около 16 лет назад

Feature Pack for Communications Enabled Applications (CEA) before 1.0.0.1 for IBM WebSphere Application Server 7.0.0.7 uses predictable session values, which allows man-in-the-middle attackers to spoof a collaboration session by guessing the value.

EPSS

Процентиль: 62%
0.00435
Низкий