Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c9gc-5qrp-654q

Опубликовано: 11 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.4

Описание

HCL MyXalytics is affected by a session fixation vulnerability. Cyber-criminals can exploit this by sending crafted URLs with a session token to access the victim's login session.

HCL MyXalytics is affected by a session fixation vulnerability. Cyber-criminals can exploit this by sending crafted URLs with a session token to access the victim's login session.

EPSS

Процентиль: 22%
0.00074
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-384

Связанные уязвимости

CVSS3: 6.4
nvd
около 1 года назад

HCL MyXalytics is affected by a session fixation vulnerability. Cyber-criminals can exploit this by sending crafted URLs with a session token to access the victim's login session.

EPSS

Процентиль: 22%
0.00074
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-384