Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xrqp-jfhx-4wcr

Опубликовано: 05 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM Security AppScan Enterprise 5.6 and 8.x before 8.7 includes a security test that sends session cookies to a specific external server, which allows man-in-the-middle attackers to hijack the test account by capturing these cookies.

IBM Security AppScan Enterprise 5.6 and 8.x before 8.7 includes a security test that sends session cookies to a specific external server, which allows man-in-the-middle attackers to hijack the test account by capturing these cookies.

EPSS

Процентиль: 46%
0.00236
Низкий

Связанные уязвимости

nvd
почти 13 лет назад

IBM Security AppScan Enterprise 5.6 and 8.x before 8.7 includes a security test that sends session cookies to a specific external server, which allows man-in-the-middle attackers to hijack the test account by capturing these cookies.

EPSS

Процентиль: 46%
0.00236
Низкий