Security Advisory

CVE-2017-5831

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-03-03 15:00:00
Last updated 2024-08-05 15:11:48
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Session fixation vulnerability in the forgot password mechanism in Revive Adserver before 4.0.1, when setting a new password, allows remote attackers to hijack web sessions via the session ID.