Логотип exploitDog
bind:CVE-2024-58317
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-58317

Количество 2

Количество 2

nvd логотип

CVE-2024-58317

около 2 месяцев назад

A cookie security configuration vulnerability in Kentico Xperience allows attackers to bypass SSL requirements when setting administration cookies via web.config. The vulnerability affects .NET Framework projects by incorrectly handling the 'requireSSL' attribute, potentially compromising session security and authentication state.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-q48x-g537-f47g

около 2 месяцев назад

A cookie security configuration vulnerability in Kentico Xperience allows attackers to bypass SSL requirements when setting administration cookies via web.config. The vulnerability affects .NET Framework projects by incorrectly handling the 'requireSSL' attribute, potentially compromising session security and authentication state.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-58317

A cookie security configuration vulnerability in Kentico Xperience allows attackers to bypass SSL requirements when setting administration cookies via web.config. The vulnerability affects .NET Framework projects by incorrectly handling the 'requireSSL' attribute, potentially compromising session security and authentication state.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-q48x-g537-f47g

A cookie security configuration vulnerability in Kentico Xperience allows attackers to bypass SSL requirements when setting administration cookies via web.config. The vulnerability affects .NET Framework projects by incorrectly handling the 'requireSSL' attribute, potentially compromising session security and authentication state.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу