Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ggv4-gh8g-hp7p

Опубликовано: 11 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Dell Wyse Management Suite 3.6.1 and below contains a Session Fixation vulnerability. A unauthenticated attacker could exploit this by taking advantage of a user with multiple active sessions in order to hijack a user's session.

Dell Wyse Management Suite 3.6.1 and below contains a Session Fixation vulnerability. A unauthenticated attacker could exploit this by taking advantage of a user with multiple active sessions in order to hijack a user's session.

EPSS

Процентиль: 48%
0.00252
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-384

Связанные уязвимости

CVSS3: 5.4
nvd
больше 3 лет назад

Dell Wyse Management Suite 3.6.1 and below contains a Session Fixation vulnerability. A unauthenticated attacker could exploit this by taking advantage of a user with multiple active sessions in order to hijack a user's session.

EPSS

Процентиль: 48%
0.00252
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-384