Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-31745
HistoryDec 10, 2021 - 6:15 p.m.

Session fixation

2021-12-1018:15:00
PRIOn knowledge base
www.prio-n.com
2

7.5 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

58.7%

Session Fixation vulnerability in login.php in Pluck-CMS Pluck 4.7.15 allows an attacker to sustain unauthorized access to the platform. Because Pluck does not invalidate prior sessions after a password change, access can be sustained even after an administrator performs regular remediation attempts such as resetting their password.

CPENameOperatorVersion
pluckeq4.7.15

7.5 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

58.7%

Related for PRION:CVE-2021-31745