MEDIUM
Session Fixation in froxlor/froxlor
Published Jun 11, 2023
5.4
MEDIUMCVSS 3.1
EPSS 0.43%
Description
Session Fixation in GitHub repository froxlor/froxlor prior to 2.1.0.
Affected products
-
- Version unspecifiedStatusaffectedConstraints<2.1.0
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Froxlor | Froxlor/froxlor | n/a |
|
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (4)
- https://github.com/advisories/GHSA-jr66-9ghf-6gp3 Advisory
- https://github.com/froxlor/froxlor/commit/94d9c3eedf31bc8447e3aa349e32880dde02ee52 Patch
- https://huntr.dev/bounties/f3644772-9c86-4f55-a0fa-aeb11f411551 ExploitPatchThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2023-3192
| Link | Providers | Tags |
|---|---|---|
| https://github.com/advisories/GHSA-jr66-9ghf-6gp3 | Advisory | |
| https://github.com/froxlor/froxlor/commit/94d9c3eedf31bc8447e3aa349e32880dde02ee52 | Patch | |
| https://huntr.dev/bounties/f3644772-9c86-4f55-a0fa-aeb11f411551 | ExploitPatchThird Party Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2023-3192 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner @huntrdev
Published Jun 11, 2023
Updated Jan 6, 2025
Reserved Jun 11, 2023
Link CVE-2023-3192
CISA Vulnrichment
GHSA-JR66-9GHF-6GP3 Updated Jan 6, 2025