Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9hf4-63r7-m7v7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Session fixation vulnerability in ownCloud before 6.0.2, when PHP is configured to accept session parameters through a GET request, allows remote attackers to hijack web sessions via unspecified vectors.

Session fixation vulnerability in ownCloud before 6.0.2, when PHP is configured to accept session parameters through a GET request, allows remote attackers to hijack web sessions via unspecified vectors.

EPSS

Процентиль: 58%
0.00365
Низкий

Дефекты

CWE-287

Связанные уязвимости

ubuntu
почти 12 лет назад

Session fixation vulnerability in ownCloud before 6.0.2, when PHP is configured to accept session parameters through a GET request, allows remote attackers to hijack web sessions via unspecified vectors.

nvd
почти 12 лет назад

Session fixation vulnerability in ownCloud before 6.0.2, when PHP is configured to accept session parameters through a GET request, allows remote attackers to hijack web sessions via unspecified vectors.

debian
почти 12 лет назад

Session fixation vulnerability in ownCloud before 6.0.2, when PHP is c ...

EPSS

Процентиль: 58%
0.00365
Низкий

Дефекты

CWE-287