ID | CVE-2006-4099 | ||||||
Sažetak | Business Objects Crystal Enterprise 9 and 10 generates predictable session identifiers, which allows remote attackers to hijack sessions of other users via WCSID cookie values. | ||||||
Reference |
|
||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:L/Au:N/C:P/I:P/A:P | ||||||
Zadnje važnije ažuriranje | 20-07-2017 - 01:32 | ||||||
Objavljeno | 29-11-2006 - 17:28 |