Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gxpm-63fr-38v5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in Couchbase Server 6.x through 6.6.1. The Couchbase Server UI is insecurely logging session cookies in the logs. This allows for the impersonation of a user if the log files are obtained by an attacker before a session cookie expires.

An issue was discovered in Couchbase Server 6.x through 6.6.1. The Couchbase Server UI is insecurely logging session cookies in the logs. This allows for the impersonation of a user if the log files are obtained by an attacker before a session cookie expires.

EPSS

Процентиль: 39%
0.00173
Низкий

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 5.9
nvd
больше 4 лет назад

An issue was discovered in Couchbase Server 6.x through 6.6.1. The Couchbase Server UI is insecurely logging session cookies in the logs. This allows for the impersonation of a user if the log files are obtained by an attacker before a session cookie expires.

EPSS

Процентиль: 39%
0.00173
Низкий

Дефекты

CWE-319