CVE-2023-45600
05.03.2024, 12:15
A CWE-613 Insufficient Session Expiration vulnerability in the web application, due to the session cookie sessionid lasting two weeks, facilitates session hijacking attacks against victims. This issue affects: AiLux imx6 bundle below version imx6_1.0.7-2.Enginsight
Vendor | Product | Version |
---|---|---|
ailux | imx6_bundle | 𝑥 < 1.0.7-2 |
ailux | imx6 | 𝑥 < 1.0.7-2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration