Description
An issue was discovered in Simmeth Lieferantenmanager before 5.6. Due to errors in session management, an attacker can log back into a victim's account after the victim logged out - /LMS/LM/#main can be used for this. This is due to the credentials not being cleaned from the local storage after logout.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-46980 | An issue was discovered in Simmeth Lieferantenmanager before 5.6. Due to errors in session management, an attacker can log back into a victim's account after the victim logged out - /LMS/LM/#main can be used for this. This is due to the credentials not being cleaned from the local storage after logout. |
References
History
Tue, 15 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-15T13:23:41.989Z
Reserved: 2022-10-29T00:00:00.000Z
Link: CVE-2022-44017
Updated: 2024-08-03T13:47:05.551Z
Status : Modified
Published: 2022-12-25T05:15:10.903
Modified: 2025-04-15T14:15:34.883
Link: CVE-2022-44017
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD