Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-465j-xpgg-p3vr

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Standard Remember method in TikiWiki CMS/Groupware 3.x before 3.5 allows remote attackers to bypass access restrictions related to "persistent login," probably due to the generation of predictable cookies based on the IP address and User agent in userslib.php.

The Standard Remember method in TikiWiki CMS/Groupware 3.x before 3.5 allows remote attackers to bypass access restrictions related to "persistent login," probably due to the generation of predictable cookies based on the IP address and User agent in userslib.php.

EPSS

Процентиль: 64%
0.00477
Низкий

Связанные уязвимости

nvd
почти 16 лет назад

The Standard Remember method in TikiWiki CMS/Groupware 3.x before 3.5 allows remote attackers to bypass access restrictions related to "persistent login," probably due to the generation of predictable cookies based on the IP address and User agent in userslib.php.

debian
почти 16 лет назад

The Standard Remember method in TikiWiki CMS/Groupware 3.x before 3.5 ...

EPSS

Процентиль: 64%
0.00477
Низкий