Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The web GUI for Novell iChain 2.2 and 2.3 SP2 and SP3 allows attackers to hijack sessions and gain administrator privileges by (1) sniffing the connection on TCP port 51100 and replaying the authentication information or (2) obtaining and replaying the PCZQX02 authentication cookie from the browser.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Novell iChain漏洞
Vulnerability Description
Novell iChain 2.2和2.3 SP2和SP3版本的web GUI 使得攻击者可以通过(1)窥测端口51100上的TCP连接并重播认证信息或者(2)从浏览器上获取并重播PCZQX02认证cookie,劫持会话并获取管理员权限。
CVSS Information
N/A
Vulnerability Type
N/A