Логотип exploitDog
bind:CVE-2021-3113
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-3113

Количество 2

Количество 2

nvd логотип

CVE-2021-3113

около 5 лет назад

Netsia SEBA+ through 0.16.1 build 70-e669dcd7 allows remote attackers to discover session cookies via a direct /session/list/allActiveSession request. For example, the attacker can discover the admin's cookie if the admin account happens to be logged in when the allActiveSession request occurs, and can then use that cookie immediately for admin access,

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-64f9-rvmm-2r5q

больше 3 лет назад

Netsia SEBA+ through 0.16.1 build 70-e669dcd7 allows remote attackers to discover session cookies via a direct /session/list/allActiveSession request. For example, the attacker can discover the admin's cookie if the admin account happens to be logged in when the allActiveSession request occurs, and can then use that cookie immediately for admin access,

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-3113

Netsia SEBA+ through 0.16.1 build 70-e669dcd7 allows remote attackers to discover session cookies via a direct /session/list/allActiveSession request. For example, the attacker can discover the admin's cookie if the admin account happens to be logged in when the allActiveSession request occurs, and can then use that cookie immediately for admin access,

CVSS3: 7.5
1%
Низкий
около 5 лет назад
github логотип
GHSA-64f9-rvmm-2r5q

Netsia SEBA+ through 0.16.1 build 70-e669dcd7 allows remote attackers to discover session cookies via a direct /session/list/allActiveSession request. For example, the attacker can discover the admin's cookie if the admin account happens to be logged in when the allActiveSession request occurs, and can then use that cookie immediately for admin access,

CVSS3: 7.5
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу