Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ph36-4xx4-6m84

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

WorldClient.dll in Alt-N MDaemon and WorldClient 8.1.3 trusts a Session parameter that contains a randomly generated session ID that is associated with a username, which allows remote attackers to perform actions as other users by guessing or sniffing the random value.

WorldClient.dll in Alt-N MDaemon and WorldClient 8.1.3 trusts a Session parameter that contains a randomly generated session ID that is associated with a username, which allows remote attackers to perform actions as other users by guessing or sniffing the random value.

EPSS

Процентиль: 70%
0.00636
Низкий

Связанные уязвимости

nvd
около 20 лет назад

WorldClient.dll in Alt-N MDaemon and WorldClient 8.1.3 trusts a Session parameter that contains a randomly generated session ID that is associated with a username, which allows remote attackers to perform actions as other users by guessing or sniffing the random value.

EPSS

Процентиль: 70%
0.00636
Низкий