Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cc99-r8rx-5vcx

Опубликовано: 10 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.1
CVSS3: 8.1

Описание

Screen SFT DAB 1.9.3 contains a weak session management vulnerability that allows attackers to bypass authentication controls by reusing IP address-bound session identifiers. Attackers can exploit the vulnerable API by intercepting and reusing established sessions to remove user accounts without proper authorization.

Screen SFT DAB 1.9.3 contains a weak session management vulnerability that allows attackers to bypass authentication controls by reusing IP address-bound session identifiers. Attackers can exploit the vulnerable API by intercepting and reusing established sessions to remove user accounts without proper authorization.

EPSS

Процентиль: 61%
0.00406
Низкий

7.1 High

CVSS4

8.1 High

CVSS3

Дефекты

CWE-384

Связанные уязвимости

CVSS3: 8.1
nvd
около 2 месяцев назад

Screen SFT DAB 1.9.3 contains a weak session management vulnerability that allows attackers to bypass authentication controls by reusing IP address-bound session identifiers. Attackers can exploit the vulnerable API by intercepting and reusing established sessions to remove user accounts without proper authorization.

EPSS

Процентиль: 61%
0.00406
Низкий

7.1 High

CVSS4

8.1 High

CVSS3

Дефекты

CWE-384