Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6g87-jg5m-ppfq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An instance of small space of random values in the RPC API of FortiSandbox before 4.0.0 may allow an attacker in possession of a few information pieces about the state of the device to possibly predict valid session IDs.

An instance of small space of random values in the RPC API of FortiSandbox before 4.0.0 may allow an attacker in possession of a few information pieces about the state of the device to possibly predict valid session IDs.

EPSS

Процентиль: 53%
0.00306
Низкий

Дефекты

CWE-330

Связанные уязвимости

CVSS3: 5.3
nvd
больше 4 лет назад

An instance of small space of random values in the RPC API of FortiSandbox before 4.0.0 may allow an attacker in possession of a few information pieces about the state of the device to possibly predict valid session IDs.

EPSS

Процентиль: 53%
0.00306
Низкий

Дефекты

CWE-330