Логотип exploitDog
bind:CVE-2023-44400
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-44400

Количество 2

Количество 2

nvd логотип

CVE-2023-44400

больше 2 лет назад

Uptime Kuma is a self-hosted monitoring tool. Prior to version 1.23.3, attackers with access to a user's device can gain persistent account access. This is caused by missing verification of Session Tokens after password changes and/or elapsed inactivity periods. Version 1.23.3 has a patch for the issue.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-g9v2-wqcj-j99g

больше 2 лет назад

Uptime Kuma has Persistentent User Sessions

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-44400

Uptime Kuma is a self-hosted monitoring tool. Prior to version 1.23.3, attackers with access to a user's device can gain persistent account access. This is caused by missing verification of Session Tokens after password changes and/or elapsed inactivity periods. Version 1.23.3 has a patch for the issue.

CVSS3: 6.7
0%
Низкий
больше 2 лет назад
github логотип
GHSA-g9v2-wqcj-j99g

Uptime Kuma has Persistentent User Sessions

CVSS3: 7.8
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу