Логотип exploitDog
bind:CVE-2016-6548
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-6548

Количество 2

Количество 2

nvd логотип

CVE-2016-6548

больше 7 лет назад

The Zizai Tech Nut mobile app makes requests via HTTP instead of HTTPS. These requests contain the user's authenticated session token with the URL. An attacker can capture these requests and reuse the session token to gain full access the user's account.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-m6fh-f3mr-6pvv

больше 3 лет назад

The Zizai Tech Nut mobile app makes requests via HTTP instead of HTTPS. These requests contain the user's authenticated session token with the URL. An attacker can capture these requests and reuse the session token to gain full access the user's account.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-6548

The Zizai Tech Nut mobile app makes requests via HTTP instead of HTTPS. These requests contain the user's authenticated session token with the URL. An attacker can capture these requests and reuse the session token to gain full access the user's account.

CVSS3: 9.8
2%
Низкий
больше 7 лет назад
github логотип
GHSA-m6fh-f3mr-6pvv

The Zizai Tech Nut mobile app makes requests via HTTP instead of HTTPS. These requests contain the user's authenticated session token with the URL. An attacker can capture these requests and reuse the session token to gain full access the user's account.

CVSS3: 9.8
2%
Низкий
больше 3 лет назад

Уязвимостей на страницу