CVE-2024-13280
09.01.2025, 20:15
Insufficient Session Expiration vulnerability in Drupal Persistent Login allows Forceful Browsing.This issue affects Persistent Login: from 0.0.0 before 1.8.0, from 2.0.* before 2.2.2.Enginsight
Vendor | Product | Version |
---|---|---|
persistent_login_project | persistent_login | 𝑥 < 1.8.0 |
persistent_login_project | persistent_login | 2.0.0 ≤ 𝑥 < 2.1.1 |
persistent_login_project | persistent_login | 2.2.0 ≤ 𝑥 < 2.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration