Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wvm3-vf48-23c8

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Macromedia JRun 3.0 and 3.1 allows remote attackers to obtain duplicate active user session IDs and perform actions as other users via a URL request for the web application directory without the trailing '/' (slash), as demonstrated using ctx.

Macromedia JRun 3.0 and 3.1 allows remote attackers to obtain duplicate active user session IDs and perform actions as other users via a URL request for the web application directory without the trailing '/' (slash), as demonstrated using ctx.

EPSS

Процентиль: 92%
0.0831
Низкий

Связанные уязвимости

nvd
почти 24 года назад

Macromedia JRun 3.0 and 3.1 allows remote attackers to obtain duplicate active user session IDs and perform actions as other users via a URL request for the web application directory without the trailing '/' (slash), as demonstrated using ctx.

EPSS

Процентиль: 92%
0.0831
Низкий