Логотип exploitDog
bind:CVE-2017-18105
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-18105

Количество 2

Количество 2

nvd логотип

CVE-2017-18105

почти 7 лет назад

The console login resource in Atlassian Crowd before version 3.0.2 and from version 3.1.0 before version 3.1.1 allows remote attackers, who have previously obtained a user's JSESSIONID cookie, to gain access to some of the built-in and potentially third party rest resources via a session fixation vulnerability.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-qq79-32v4-8c7v

больше 3 лет назад

The console login resource in Atlassian Crowd before version 3.0.2 and from version 3.1.0 before version 3.1.1 allows remote attackers, who have previously obtained a user's JSESSIONID cookie, to gain access to some of the built-in and potentially third party rest resources via a session fixation vulnerability.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-18105

The console login resource in Atlassian Crowd before version 3.0.2 and from version 3.1.0 before version 3.1.1 allows remote attackers, who have previously obtained a user's JSESSIONID cookie, to gain access to some of the built-in and potentially third party rest resources via a session fixation vulnerability.

CVSS3: 8.1
1%
Низкий
почти 7 лет назад
github логотип
GHSA-qq79-32v4-8c7v

The console login resource in Atlassian Crowd before version 3.0.2 and from version 3.1.0 before version 3.1.1 allows remote attackers, who have previously obtained a user's JSESSIONID cookie, to gain access to some of the built-in and potentially third party rest resources via a session fixation vulnerability.

CVSS3: 8.1
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу