Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28016
HistoryDec 02, 2020 - 5:12 a.m.

Insecure Session Management

2020-12-0205:12:07
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
moodle
insecure session
session tokens
invalidated
password change

EPSS

0.001

Percentile

36.5%

moodle/moodle uses an insecure session management. The session tokens are not invalidated or removed upon a successful password change.

EPSS

0.001

Percentile

36.5%