Lucene search

K
cvelistMitreCVELIST:CVE-2021-46900
HistoryDec 31, 2023 - 12:00 a.m.

CVE-2021-46900

2023-12-3100:00:00
mitre
www.cve.org
5
sympa
6.2.62
cookie
security
vulnerability
salt
stored passwords
xss
protection

EPSS

0.001

Percentile

44.3%

Sympa before 6.2.62 relies on a cookie parameter for certain security objectives, but does not ensure that this parameter exists and has an unpredictable value. Specifically, the cookie parameter is both a salt for stored passwords and an XSS protection mechanism.

EPSS

0.001

Percentile

44.3%

Related for CVELIST:CVE-2021-46900