Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mq3q-jjph-rp5p

Опубликовано: 01 мая 2022
Источник: github
Github: Прошло ревью

Описание

Plone CMS Improper Session Management

Plone CMS before 3 places a base64 encoded form of the username and password in the __ac cookie for all user accounts, which makes it easier for remote attackers to obtain access by sniffing the network.

Пакеты

Наименование

Plone

pip
Затронутые версииВерсия исправления

< 3.0

3.0

EPSS

Процентиль: 72%
0.00715
Низкий

Связанные уязвимости

ubuntu
больше 17 лет назад

Plone CMS before 3 places a base64 encoded form of the username and password in the __ac cookie for all user accounts, which makes it easier for remote attackers to obtain access by sniffing the network.

nvd
больше 17 лет назад

Plone CMS before 3 places a base64 encoded form of the username and password in the __ac cookie for all user accounts, which makes it easier for remote attackers to obtain access by sniffing the network.

debian
больше 17 лет назад

Plone CMS before 3 places a base64 encoded form of the username and pa ...

EPSS

Процентиль: 72%
0.00715
Низкий