CVE-2022-2888
21.09.2022, 12:15
If an attacker comes into the possession of a victim's OctoPrint session cookie through whatever means, the attacker can use this cookie to authenticate as long as the victim's account exists.Enginsight
Vendor | Product | Version |
---|---|---|
octoprint | octoprint | 𝑥 < 1.8.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References