Description
Session tokens in RWS WorldServer 11.7.3 and earlier have a low entropy and can be enumerated, leading to unauthorized access to user sessions.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-42174 | Session tokens in RWS WorldServer 11.7.3 and earlier have a low entropy and can be enumerated, leading to unauthorized access to user sessions. |
References
History
Thu, 17 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-10-17T19:03:47.918Z
Reserved: 2023-07-15T00:00:00.000Z
Link: CVE-2023-38357
Updated: 2024-08-02T17:39:12.700Z
Status : Modified
Published: 2023-08-01T15:15:09.703
Modified: 2024-11-21T08:13:24.547
Link: CVE-2023-38357
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD