CVE-2008-5809

futomi CGI Cafe Access Analyzer CGI Standard 4.0.1 and earlier and Access Analyzer CGI Professional 4.11.3 and earlier use a predictable session id, which makes it easier for remote attackers to hijack sessions, and obtain sensitive information about analysis results, via a modified id.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 51%
VendorProductVersion
futomiaccess_analyzer_cgi
𝑥
≤ 4.0.1
futomiaccess_analyzer_cgi
1.0
futomiaccess_analyzer_cgi
1.1
futomiaccess_analyzer_cgi
1.1
futomiaccess_analyzer_cgi
1.2
futomiaccess_analyzer_cgi
1.2
futomiaccess_analyzer_cgi
1.3
futomiaccess_analyzer_cgi
1.3
futomiaccess_analyzer_cgi
1.4
futomiaccess_analyzer_cgi
1.4
futomiaccess_analyzer_cgi
1.5
futomiaccess_analyzer_cgi
1.6
futomiaccess_analyzer_cgi
1.7
futomiaccess_analyzer_cgi
2.0
futomiaccess_analyzer_cgi
2.0
futomiaccess_analyzer_cgi
2.1
futomiaccess_analyzer_cgi
2.1
futomiaccess_analyzer_cgi
2.2
futomiaccess_analyzer_cgi
2.2
futomiaccess_analyzer_cgi
2.3
futomiaccess_analyzer_cgi
2.3
futomiaccess_analyzer_cgi
2.4
futomiaccess_analyzer_cgi
2.4
futomiaccess_analyzer_cgi
3.0
futomiaccess_analyzer_cgi
3.0
futomiaccess_analyzer_cgi
3.1
futomiaccess_analyzer_cgi
3.1
futomiaccess_analyzer_cgi
3.2
futomiaccess_analyzer_cgi
3.2
futomiaccess_analyzer_cgi
3.3
futomiaccess_analyzer_cgi
3.3
futomiaccess_analyzer_cgi
3.4
futomiaccess_analyzer_cgi
3.4
futomiaccess_analyzer_cgi
3.5
futomiaccess_analyzer_cgi
3.5
futomiaccess_analyzer_cgi
3.6
futomiaccess_analyzer_cgi
3.7
futomiaccess_analyzer_cgi
3.8
futomiaccess_analyzer_cgi
3.8.1
futomiaccess_analyzer_cgi
4.0
futomiaccess_analyzer_cgi
4.0.0
futomiaccess_analyzer_cgi
4.1
futomiaccess_analyzer_cgi
4.2
futomiaccess_analyzer_cgi
4.3
futomiaccess_analyzer_cgi
4.4
futomiaccess_analyzer_cgi
4.5
futomiaccess_analyzer_cgi
4.6
futomiaccess_analyzer_cgi
4.7
futomiaccess_analyzer_cgi
4.8
futomiaccess_analyzer_cgi
4.9
futomiaccess_analyzer_cgi
4.10
futomiaccess_analyzer_cgi
4.10.1
futomiaccess_analyzer_cgi
4.10.2
futomiaccess_analyzer_cgi
4.10.3
futomiaccess_analyzer_cgi
4.10.4
futomiaccess_analyzer_cgi
4.10.5
futomiaccess_analyzer_cgi
4.11.0
futomiaccess_analyzer_cgi
4.11.1
futomiaccess_analyzer_cgi
4.11.2
futomiaccess_analyzer_cgi
4.11.3
𝑥
= Vulnerable software versions