OpenText Exceed OnDemand (EoD) 8 transmits the session ID in cleartext, which allows remote attackers to perform session fixation attacks by sniffing the network.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Exceed_ondemand |
Opentext |
8.0 (including) |
8.0 (including) |
References