CVE Vulnerabilities

CVE-2017-14332

Published: Oct 23, 2017 | Modified: Apr 20, 2025
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Extreme EXOS 15.7, 16.x, 21.x, and 22.x allows remote attackers to hijack sessions by determining SessionID values.

Affected Software

NameVendorStart VersionEnd Version
ExtremexosExtremenetworks15.7 (including)15.7 (including)
ExtremexosExtremenetworks16.1.2 (including)16.1.2 (including)
ExtremexosExtremenetworks16.1.3 (including)16.1.3 (including)
ExtremexosExtremenetworks16.1.4 (including)16.1.4 (including)
ExtremexosExtremenetworks16.2 (including)16.2 (including)
ExtremexosExtremenetworks16.2.2 (including)16.2.2 (including)
ExtremexosExtremenetworks16.2.3 (including)16.2.3 (including)
ExtremexosExtremenetworks16.2.4 (including)16.2.4 (including)
ExtremexosExtremenetworks21.1 (including)21.1 (including)
ExtremexosExtremenetworks21.1.1 (including)21.1.1 (including)
ExtremexosExtremenetworks21.1.2 (including)21.1.2 (including)
ExtremexosExtremenetworks21.1.3 (including)21.1.3 (including)
ExtremexosExtremenetworks21.1.4 (including)21.1.4 (including)
ExtremexosExtremenetworks22.1 (including)22.1 (including)
ExtremexosExtremenetworks22.2 (including)22.2 (including)
ExtremexosExtremenetworks22.3 (including)22.3 (including)
ExtremexosExtremenetworks22.4 (including)22.4 (including)

References