Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4mx2-9grf-8f85

Опубликовано: 26 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

HCL Aftermarket DPC is affected by Session Fixation which allows attacker to takeover the user's session and use it carry out unauthorized transaction behalf of the user.

HCL Aftermarket DPC is affected by Session Fixation which allows attacker to takeover the user's session and use it carry out unauthorized transaction behalf of the user.

EPSS

Процентиль: 11%
0.00036
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-384

Связанные уязвимости

CVSS3: 5.9
nvd
23 дня назад

HCL Aftermarket DPC is affected by Session Fixation which allows attacker to takeover the user's session and use it carry out unauthorized transaction behalf of the user.

EPSS

Процентиль: 11%
0.00036
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-384