Описание
An issue was discovered in Sesami Cash Point & Transport Optimizer (CPTO) 6.3.8.6 (#718), allows local attackers to obtain sensitive information and bypass authentication via "Back Button Refresh" attack.
Ссылки
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:sesami:cash_point_\&_transport_optimizer:6.3.8.6.718:*:*:*:*:*:*:*
EPSS
Процентиль: 4%
0.00018
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-287
CWE-287
Связанные уязвимости
CVSS3: 5.5
github
около 2 лет назад
An issue was discovered in Sesami Cash Point & Transport Optimizer (CPTO) 6.3.8.6 (#718), allows local attackers to obtain sensitive information and bypass authentication via "Back Button Refresh" attack.
EPSS
Процентиль: 4%
0.00018
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-287
CWE-287