Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4g47-3fx3-5q52

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Lan ATMService M3 ATM Monitoring System 6.1.0, a remote attacker able to use a default cookie value, such as PHPSESSID=LANIT-IMANAGER, can achieve control over the system because of Insufficient Session Expiration.

In Lan ATMService M3 ATM Monitoring System 6.1.0, a remote attacker able to use a default cookie value, such as PHPSESSID=LANIT-IMANAGER, can achieve control over the system because of Insufficient Session Expiration.

EPSS

Процентиль: 89%
0.04441
Низкий

Дефекты

CWE-613

Связанные уязвимости

CVSS3: 9.8
nvd
около 5 лет назад

In Lan ATMService M3 ATM Monitoring System 6.1.0, a remote attacker able to use a default cookie value, such as PHPSESSID=LANIT-IMANAGER, can achieve control over the system because of Insufficient Session Expiration.

EPSS

Процентиль: 89%
0.04441
Низкий

Дефекты

CWE-613