Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4cg9-8h6p-p27g

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SerendipityNZ (aka SimpleBoxes) Serene Bach 2.20R and earlier, and 3.00 beta023 and earlier 3.x versions, uses a predictable session id, which makes it easier for remote attackers to hijack sessions via a modified id.

SerendipityNZ (aka SimpleBoxes) Serene Bach 2.20R and earlier, and 3.00 beta023 and earlier 3.x versions, uses a predictable session id, which makes it easier for remote attackers to hijack sessions via a modified id.

EPSS

Процентиль: 71%
0.00675
Низкий

Связанные уязвимости

nvd
больше 16 лет назад

SerendipityNZ (aka SimpleBoxes) Serene Bach 2.20R and earlier, and 3.00 beta023 and earlier 3.x versions, uses a predictable session id, which makes it easier for remote attackers to hijack sessions via a modified id.

EPSS

Процентиль: 71%
0.00675
Низкий