CVE Vulnerabilities

CVE-2017-14332

Published: Oct 23, 2017 | Modified: Oct 03, 2019
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Extreme EXOS 15.7, 16.x, 21.x, and 22.x allows remote attackers to hijack sessions by determining SessionID values.

Affected Software

Name Vendor Start Version End Version
Extremexos Extremenetworks 15.7 (including) 15.7 (including)
Extremexos Extremenetworks 16.1.2 (including) 16.1.2 (including)
Extremexos Extremenetworks 16.1.3 (including) 16.1.3 (including)
Extremexos Extremenetworks 16.1.4 (including) 16.1.4 (including)
Extremexos Extremenetworks 16.2 (including) 16.2 (including)
Extremexos Extremenetworks 16.2.2 (including) 16.2.2 (including)
Extremexos Extremenetworks 16.2.3 (including) 16.2.3 (including)
Extremexos Extremenetworks 16.2.4 (including) 16.2.4 (including)
Extremexos Extremenetworks 21.1 (including) 21.1 (including)
Extremexos Extremenetworks 21.1.1 (including) 21.1.1 (including)
Extremexos Extremenetworks 21.1.2 (including) 21.1.2 (including)
Extremexos Extremenetworks 21.1.3 (including) 21.1.3 (including)
Extremexos Extremenetworks 21.1.4 (including) 21.1.4 (including)
Extremexos Extremenetworks 22.1 (including) 22.1 (including)
Extremexos Extremenetworks 22.2 (including) 22.2 (including)
Extremexos Extremenetworks 22.3 (including) 22.3 (including)
Extremexos Extremenetworks 22.4 (including) 22.4 (including)

References