Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hp8g-c833-gg8v

Опубликовано: 27 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Reliance on Cookies without Validation and Integrity Checking vulnerability in Talya Informatics Elektraweb allows Session Credential Falsification through Manipulation, Accessing/Intercepting/Modifying HTTP Cookies, Manipulating Opaque Client-based Data Tokens.This issue affects Elektraweb: before v17.0.68.

Reliance on Cookies without Validation and Integrity Checking vulnerability in Talya Informatics Elektraweb allows Session Credential Falsification through Manipulation, Accessing/Intercepting/Modifying HTTP Cookies, Manipulating Opaque Client-based Data Tokens.This issue affects Elektraweb: before v17.0.68.

EPSS

Процентиль: 39%
0.00174
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-565

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

Reliance on Cookies without Validation and Integrity Checking vulnerability in Talya Informatics Elektraweb allows Session Credential Falsification through Manipulation, Accessing/Intercepting/Modifying HTTP Cookies, Manipulating Opaque Client-based Data Tokens.This issue affects Elektraweb: before v17.0.68.

EPSS

Процентиль: 39%
0.00174
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-565