Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-0090

Опубликовано: 24 мар. 2014
Источник: redhat
CVSS2: 3.6
EPSS Низкий

Описание

Session fixation vulnerability in Foreman before 1.4.2 allows remote attackers to hijack web sessions via the session id cookie.

Отчет

The Red Hat Security Response Team has rated this issue as having Low security impact in Red Hat Enterprise Linux OpenStack Platform 3 and 4. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenStack Platform 3ruby193-foremanWill not fix
Red Hat OpenStack Platform 4foremanWill not fix
Red Hat Satellite 6.0foremanFixedRHEA-2014:117510.09.2014

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-384

EPSS

Процентиль: 69%
0.01379
Низкий

3.6 Low

CVSS2

Связанные уязвимости

nvd
больше 12 лет назад

Session fixation vulnerability in Foreman before 1.4.2 allows remote attackers to hijack web sessions via the session id cookie.

debian
больше 12 лет назад

Session fixation vulnerability in Foreman before 1.4.2 allows remote a ...

github
около 4 лет назад

Session fixation vulnerability in Foreman before 1.4.2 allows remote attackers to hijack web sessions via the session id cookie.

EPSS

Процентиль: 69%
0.01379
Низкий

3.6 Low

CVSS2