Описание
The Chatroom Module before 4.7.x.-1.0 for Drupal broadcasts Chatroom visitors' session IDs to all participants, which allows remote attackers to hijack sessions and gain privileges.
Уязвимые конфигурации
Конфигурация 1Версия до 4.7 (включая)
cpe:2.3:a:drupal:chatroom_module:*:*:*:*:*:*:*:*
EPSS
Процентиль: 70%
0.01413
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 4 лет назад
The Chatroom Module before 4.7.x.-1.0 for Drupal broadcasts Chatroom visitors' session IDs to all participants, which allows remote attackers to hijack sessions and gain privileges.
EPSS
Процентиль: 70%
0.01413
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other