ZeroHour

CVE-2023-45687

PoC
CVSS 3.1
8.8 high
EPSS
1%p66
Published
()
Modified
Description

A session fixation vulnerability in South River Technologies' Titan MFT and Titan SFTP servers on Linux and Windows allows an attacker to bypass the server's authentication if they can trick an administrator into authorizating a session id of their choosing

Vendors
southrivertech
Products
titan mft server, titan sftp server
Weakness
CWE-384
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news