Логотип exploitDog
bind:CVE-2014-1219
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-1219

Количество 2

Количество 2

nvd логотип

CVE-2014-1219

почти 12 лет назад

CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which allows remote attackers to hijack sessions by changing characters at the end of this substring, as demonstrated by terminating a session via a modified SSNID parameter to web2edoc/close.htm.

CVSS2: 5.1
EPSS: Низкий
github логотип

GHSA-vfgg-62x5-92v2

больше 3 лет назад

CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which allows remote attackers to hijack sessions by changing characters at the end of this substring, as demonstrated by terminating a session via a modified SSNID parameter to web2edoc/close.htm.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2014-1219

CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which allows remote attackers to hijack sessions by changing characters at the end of this substring, as demonstrated by terminating a session via a modified SSNID parameter to web2edoc/close.htm.

CVSS2: 5.1
6%
Низкий
почти 12 лет назад
github логотип
GHSA-vfgg-62x5-92v2

CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which allows remote attackers to hijack sessions by changing characters at the end of this substring, as demonstrated by terminating a session via a modified SSNID parameter to web2edoc/close.htm.

6%
Низкий
больше 3 лет назад

Уязвимостей на страницу