OpenText Exceed OnDemand (EoD) 8 transmits the session ID in cleartext, which allows remote attackers to perform session fixation attacks by sniffing the network.
Affected Software
| Name |
Vendor |
Start Version |
End Version |
| Exceed_ondemand |
Opentext |
8.0 (including) |
8.0 (including) |
References