CVE-2010-5067
08.10.2012, 10:47
Virtual War (aka VWar) 1.6.1 R2 uses static session cookies that depend only on a user's password, which makes it easier for remote attackers to bypass timeout and logout actions, and retain access for a long period of time, by leveraging knowledge of a session cookie.Enginsight
Vendor | Product | Version |
---|---|---|
vwar | virtual_war | 1.6.1:r2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration