Description
This vulnerability exists in ESDS Emagic Data Center Management Suit due to non-expiry of session cookie.
By reusing the stolen cookie, a remote attacker could gain unauthorized access to the targeted system.
By reusing the stolen cookie, a remote attacker could gain unauthorized access to the targeted system.
No analysis available yet.
Remediation
Vendor Solution
Upgrade to Enlight360 Datacenter Management Center Suite with latest version v8.9
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41456 | This vulnerability exists in ESDS Emagic Data Center Management Suit due to non-expiry of session cookie. By reusing the stolen cookie, a remote attacker could gain unauthorized access to the targeted system. |
References
History
Fri, 11 Oct 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: CERT-In
Published:
Updated: 2024-10-10T17:58:16.654Z
Reserved: 2023-07-07T09:41:33.905Z
Link: CVE-2023-37570
Updated: 2024-08-02T17:16:30.849Z
Status : Modified
Published: 2023-08-08T09:15:10.783
Modified: 2024-11-21T08:11:58.247
Link: CVE-2023-37570
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD