6.8
CVE-2012-5173
- EPSS 1.31%
- Veröffentlicht 23.11.2012 12:09:54
- Zuletzt bearbeitet 16.06.2026 23:46:23
- Quelle vultures@jpcert.or.jp
- CVE-Watchlists
- Unerledigt
Session fixation vulnerability in BIGACE before 2.7.8 allows remote attackers to hijack web sessions via unspecified vectors.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.31% | 0.669 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
http://jvn.jp/en/jp/JVN60931933/index.html
http://jvndb.jvn.jp/jvndb/JVNDB-2012-000104
http://secunia.com/advisories/51355
http://www.bigace.de/news/bigace-2.7.8.html