Session Fixation vulnerabilities allow an attacker to fix a users session identifier before login providing an opportunity for session takeover on a product.
Affected products:
ABB ASPECT - Enterprise v3.08.02;
NEXUS Series v3.08.02;
MATRIX Series v3.08.02
Metrics
Affected Vendors & Products
References
History
Thu, 05 Dec 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Abb
Abb aspect Enterprise Abb matrix Series Abb nexus Series |
|
CPEs | cpe:2.3:a:abb:aspect_enterprise:*:*:*:*:*:*:*:* cpe:2.3:a:abb:matrix_series:*:*:*:*:*:*:*:* cpe:2.3:a:abb:nexus_series:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Abb
Abb aspect Enterprise Abb matrix Series Abb nexus Series |
|
Metrics |
ssvc
|
Thu, 05 Dec 2024 13:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Session Fixation vulnerabilities allow an attacker to fix a users session identifier before login providing an opportunity for session takeover on a product. Affected products: ABB ASPECT - Enterprise v3.08.02; NEXUS Series v3.08.02; MATRIX Series v3.08.02 | |
Title | PHP Session Fixation | |
Weaknesses | CWE-384 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: ABB
Published: 2024-12-05T12:36:27.768Z
Updated: 2024-12-05T18:49:49.571Z
Reserved: 2024-11-18T03:55:36.724Z
Link: CVE-2024-11317
Vulnrichment
Updated: 2024-12-05T15:54:52.099Z
NVD
Status : Received
Published: 2024-12-05T13:15:05.747
Modified: 2024-12-05T13:15:05.747
Link: CVE-2024-11317
Redhat
No data.