Lucene search

K
nvd[email protected]NVD:CVE-2015-0544
HistoryJul 05, 2015 - 10:59 a.m.

CVE-2015-0544

2015-07-0510:59:01
web.nvd.nist.gov
3

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

Low

EPSS

0.006

Percentile

78.0%

EMC Secure Remote Services Virtual Edition (ESRS VE) 3.x before 3.06 does not properly generate random values for session cookies, which makes it easier for remote attackers to hijack sessions by predicting a value.

Affected configurations

NVD
Node
emcsecure_remote_servicesMatch3.02virtual
OR
emcsecure_remote_servicesMatch3.03virtual
OR
emcsecure_remote_servicesMatch3.04virtual

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

Low

EPSS

0.006

Percentile

78.0%

Related for NVD:CVE-2015-0544