Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-55603

Опубликовано: 19 дек. 2024
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

Kanboard is project management software that focuses on the Kanban methodology. In affected versions sessions are still usable even though their lifetime has exceeded. Kanboard implements a cutom session handler (app/Core/Session/SessionHandler.php), to store the session data in a database. Therefore, when a session_id is given, kanboard queries the data from the sessions sql table. At this point, it does not correctly verify, if a given session_id has already exceeded its lifetime (expires_at). Thus, a session which's lifetime is already > time(), is still queried from the database and hence a valid login. The implemented SessionHandlerInterface::gc function, that does remove invalid sessions, is called only with a certain probability (Cleans up expired sessions. Called by session_start(), based on session.gc_divisor, session.gc_probability and session.gc_maxlifetime settings) accordingly to the php documentation. In the official Kanboard docker image the

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:kanboard:kanboard:*:*:*:*:*:*:*:*
Версия до 1.2.43 (исключая)

EPSS

Процентиль: 69%
0.00605
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-613

Связанные уязвимости

CVSS3: 6.5
debian
около 1 года назад

Kanboard is project management software that focuses on the Kanban met ...

EPSS

Процентиль: 69%
0.00605
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-613