CVE-2015-0544 Information

Description

EMC Secure Remote Services Virtual Edition (ESRS VE) 3.x before 3.06 does not properly generate random values for session cookies which makes it easier for remote attackers to hijack sessions by predicting a value.

Reference

http://seclists.org/bugtraq/2015/Jun/132 http://www.securitytracker.com/id/1032740

Share on: