Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wxp6-73mp-xrcm

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

AjaXplorer 3.2.x before 3.2.5 and 4.0.x before 4.0.4 does not properly perform cookie authentication, which allows remote attackers to obtain login access by leveraging knowledge of a password hash.

AjaXplorer 3.2.x before 3.2.5 and 4.0.x before 4.0.4 does not properly perform cookie authentication, which allows remote attackers to obtain login access by leveraging knowledge of a password hash.

EPSS

Процентиль: 70%
0.00624
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
почти 14 лет назад

AjaXplorer 3.2.x before 3.2.5 and 4.0.x before 4.0.4 does not properly perform cookie authentication, which allows remote attackers to obtain login access by leveraging knowledge of a password hash.

debian
почти 14 лет назад

AjaXplorer 3.2.x before 3.2.5 and 4.0.x before 4.0.4 does not properly ...

EPSS

Процентиль: 70%
0.00624
Низкий

Дефекты

CWE-287