OpenText Exceed OnDemand (EoD) 8 transmits the session ID in cleartext, which allows remote attackers to perform session fixation attacks by sniffing the network.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Exceed_ondemand | Opentext | 8.0 (including) | 8.0 (including) |
References