Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q92j-v67p-9m5c

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Lanap BotDetect APS.NET CAPTCHA component before 1.5.4.0 stores the UUID and hash for a CAPTCHA in the ViewState of a page, which makes it easier for remote attackers to conduct automated attacks by "replaying the ViewState for a known number."

The Lanap BotDetect APS.NET CAPTCHA component before 1.5.4.0 stores the UUID and hash for a CAPTCHA in the ViewState of a page, which makes it easier for remote attackers to conduct automated attacks by "replaying the ViewState for a known number."

EPSS

Процентиль: 73%
0.00746
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

The Lanap BotDetect APS.NET CAPTCHA component before 1.5.4.0 stores the UUID and hash for a CAPTCHA in the ViewState of a page, which makes it easier for remote attackers to conduct automated attacks by "replaying the ViewState for a known number."

EPSS

Процентиль: 73%
0.00746
Низкий