Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-14826

Опубликовано: 17 сент. 2019
Источник: nvd
CVSS3: 5.6
CVSS3: 4.4
CVSS2: 2.1
EPSS Низкий

Описание

A flaw was found in FreeIPA versions 4.5.0 and later. Session cookies were retained in the cache after logout. An attacker could abuse this flaw if they obtain previously valid session cookies and can use this to gain access to the session.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:freeipa:freeipa:*:*:*:*:*:*:*:*
Версия от 4.5.0 (включая)
Конфигурация 2

Одно из

cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*

EPSS

Процентиль: 30%
0.00113
Низкий

5.6 Medium

CVSS3

4.4 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-613
CWE-613

Связанные уязвимости

CVSS3: 4.4
ubuntu
больше 6 лет назад

A flaw was found in FreeIPA versions 4.5.0 and later. Session cookies were retained in the cache after logout. An attacker could abuse this flaw if they obtain previously valid session cookies and can use this to gain access to the session.

CVSS3: 1.8
redhat
больше 6 лет назад

A flaw was found in FreeIPA versions 4.5.0 and later. Session cookies were retained in the cache after logout. An attacker could abuse this flaw if they obtain previously valid session cookies and can use this to gain access to the session.

CVSS3: 4.4
debian
больше 6 лет назад

A flaw was found in FreeIPA versions 4.5.0 and later. Session cookies ...

CVSS3: 4.4
github
больше 3 лет назад

A flaw was found in FreeIPA versions 4.5.0 and later. Session cookies were retained in the cache after logout. An attacker could abuse this flaw if they obtain previously valid session cookies and can use this to gain access to the session.

CVSS3: 6
fstec
больше 6 лет назад

Уязвимость сервера FreeIPA, связанная с неверным сроком действия сеанса, позволяющая нарушителю получить доступ к сеансу

EPSS

Процентиль: 30%
0.00113
Низкий

5.6 Medium

CVSS3

4.4 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-613
CWE-613