Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jrvx-j527-53gx

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.6

Описание

An Insufficient Session Expiration issue was discovered in ProMinent MultiFLEX M10a Controller web interface. The user's session is available for an extended period beyond the last activity, allowing an attacker to reuse an old session for authorization.

An Insufficient Session Expiration issue was discovered in ProMinent MultiFLEX M10a Controller web interface. The user's session is available for an extended period beyond the last activity, allowing an attacker to reuse an old session for authorization.

EPSS

Процентиль: 45%
0.00227
Низкий

5.6 Medium

CVSS3

Дефекты

CWE-613

Связанные уязвимости

CVSS3: 5.6
nvd
больше 8 лет назад

An Insufficient Session Expiration issue was discovered in ProMinent MultiFLEX M10a Controller web interface. The user's session is available for an extended period beyond the last activity, allowing an attacker to reuse an old session for authorization.

EPSS

Процентиль: 45%
0.00227
Низкий

5.6 Medium

CVSS3

Дефекты

CWE-613