Описание
Exposure of session signing secret in Checkmk <2.4.0p23, <2.3.0p45 and 2.2.0 allows an administrator of a remote site with config sync enabled to hijack sessions on the central site by forging session cookies.
EPSS
Процентиль: 14%
0.00047
Низкий
Дефекты
CWE-522
Связанные уязвимости
ubuntu
20 дней назад
Exposure of session signing secret in Checkmk <2.4.0p23, <2.3.0p45 and 2.2.0 allows an administrator of a remote site with config sync enabled to hijack sessions on the central site by forging session cookies.
debian
20 дней назад
Exposure of session signing secret in Checkmk <2.4.0p23, <2.3.0p45 and ...
github
20 дней назад
Exposure of session signing secret in Checkmk <2.4.0p23, <2.3.0p45 and 2.2.0 allows an administrator of a remote site with config sync enabled to hijack sessions on the central site by forging session cookies.
EPSS
Процентиль: 14%
0.00047
Низкий
Дефекты
CWE-522