Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22423
HistoryJan 31, 2020 - 9:23 a.m.

Harded Coded Remember-Me Cookie

2020-01-3109:23:50
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

EPSS

0.001

Percentile

42.8%

Opencast uses a harded coded remember-me cookie. The remember-me cookie is created by hashing the username, password, and an additional system key, allowing anyone with an access to the remember-me token for one server to compromise all servers using the same credentials.

EPSS

0.001

Percentile

42.8%