The dhost web service in Novell eDirectory 8.8.5 uses a predictable session cookie, which makes it easier for remote attackers to hijack sessions via a modified cookie.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Edirectory |
Novell |
8.8.5 (including) |
8.8.5 (including) |
References