Логотип exploitDog
bind:CVE-2022-45922
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-45922

Количество 2

Количество 2

nvd логотип

CVE-2022-45922

около 3 лет назад

An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The request handler for ll.KeepAliveSession sets a valid AdminPwd cookie even when the Web Admin password was not entered. This allows access to endpoints, which require a valid AdminPwd cookie, without knowing the password.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-hf4r-p94v-76j9

около 3 лет назад

An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The request handler for ll.KeepAliveSession sets a valid AdminPwd cookie even when the Web Admin password was not entered. This allows access to endpoints, which require a valid AdminPwd cookie, without knowing the password.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-45922

An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The request handler for ll.KeepAliveSession sets a valid AdminPwd cookie even when the Web Admin password was not entered. This allows access to endpoints, which require a valid AdminPwd cookie, without knowing the password.

CVSS3: 8.8
2%
Низкий
около 3 лет назад
github логотип
GHSA-hf4r-p94v-76j9

An issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). The request handler for ll.KeepAliveSession sets a valid AdminPwd cookie even when the Web Admin password was not entered. This allows access to endpoints, which require a valid AdminPwd cookie, without knowing the password.

CVSS3: 8.8
2%
Низкий
около 3 лет назад

Уязвимостей на страницу