Description
Reliance on Cookies without Validation and Integrity Checking vulnerability in Talya Informatics Elektraweb allows Session Credential Falsification through Manipulation, Accessing/Intercepting/Modifying HTTP Cookies, Manipulating Opaque Client-based Data Tokens.
This issue affects Elektraweb: before v17.0.68.
This issue affects Elektraweb: before v17.0.68.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-16726 | Reliance on Cookies without Validation and Integrity Checking vulnerability in Talya Informatics Elektraweb allows Session Credential Falsification through Manipulation, Accessing/Intercepting/Modifying HTTP Cookies, Manipulating Opaque Client-based Data Tokens.This issue affects Elektraweb: before v17.0.68. |
References
History
Wed, 03 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Talya Informatics
Talya Informatics elektraweb |
|
| CPEs | cpe:2.3:a:talya_informatics:elektraweb:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Talya Informatics
Talya Informatics elektraweb |
|
| Metrics |
ssvc
|
Wed, 03 Jun 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Reliance on Cookies without Validation and Integrity Checking vulnerability in Talya Informatics Elektraweb allows Session Credential Falsification through Manipulation, Accessing/Intercepting/Modifying HTTP Cookies, Manipulating Opaque Client-based Data Tokens.This issue affects Elektraweb: before v17.0.68. | Reliance on Cookies without Validation and Integrity Checking vulnerability in Talya Informatics Elektraweb allows Session Credential Falsification through Manipulation, Accessing/Intercepting/Modifying HTTP Cookies, Manipulating Opaque Client-based Data Tokens. This issue affects Elektraweb: before v17.0.68. |
| References |
|
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2026-06-03T14:37:35.186Z
Reserved: 2024-01-26T12:45:13.714Z
Link: CVE-2024-0947
Updated: 2024-08-01T18:26:29.991Z
Status : Deferred
Published: 2024-06-27T10:15:11.563
Modified: 2026-06-03T16:16:19.363
Link: CVE-2024-0947
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD