ZeroHour

CVE-2018-5465

CVSS 3.0
8.8 high
EPSS
2%p76
Published
()
Modified
Description

A Session Fixation issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. A session fixation vulnerability in the web interface has been identified, which may allow an attacker to hijack web sessions.

Vendors
belden
Products
hirschmann rs20-0900mmm2tdau, hirschmann rs20-0900nnm4tdau, hirschmann rs20-0900vvm2tdau, hirschmann rs20-1600l2l2sdau, hirschmann rs20-1600l2m2sdau, hirschmann rs20-1600l2s2sdau, hirschmann rs20-1600l2t1sdau, hirschmann rs20-1600m2m2sdau, hirschmann rs20-1600m2t1sdau, hirschmann rs20-1600s2m2sdau, hirschmann rs20-1600s2s2sdau, hirschmann rs20-1600s2t1sdau
Weakness
CWE-384
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.