PT-2001-2617 · Webx · Webx

Publicado

2001-12-31

·

Atualizado

2008-09-05

·

CVE-2001-1532

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions WebX (affected versions not specified)
Description The issue allows remote attackers to hijack user sessions due to the storage of authentication information in the HTTP REFERER variable, which is included in URL links within bulletin board messages posted by users.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2001-1532

Produtos afetados

Webx