HUMAX HGA12R-02 BRGCAA 1.1.53 devices allow Session Hijacking.
Authenticating a user, or otherwise establishing a new user session, without invalidating any existing session identifier gives an attacker the opportunity to steal authenticated sessions.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Hga12r-02_firmware | Humaxdigital | 1.1.53 (including) | 1.1.53 (including) |
Such a scenario is commonly observed when: