jet-pentest/CVE-2020-29667

jet-pentest/CVE-2020-29667

Releases0
Stars1

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL10 HIGH

In Lan ATMService M3 ATM Monitoring System 6.1.0, a remote attacker able to use a default cookie value, such as PHPSESSID=LANIT-IMANAGER, can achieve control over the system because of Insufficient Session Expiration.