Description
Use of a hard-coded cryptographic key in Pancake versions < 4.13.29 allows an attacker to forge session cookies, which may lead to remote privilege escalation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-17584 | Use of a hard-coded cryptographic key in Pancake versions < 4.13.29 allows an attacker to forge session cookies, which may lead to remote privilege escalation. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:19:09.421Z
Reserved: 2020-08-28T00:00:00.000Z
Link: CVE-2020-24876
No data.
Status : Modified
Published: 2020-09-03T17:15:11.473
Modified: 2024-11-21T05:16:09.460
Link: CVE-2020-24876
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD