Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
WebYaST in yast2-webclient in SUSE Linux Enterprise (SLE) 11 on the WebYaST appliance uses a fixed secret key that is embedded in the appliance's image, which allows remote attackers to spoof session cookies by leveraging knowledge of this key.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WebYaST信任管理漏洞
Vulnerability Description
WebYaST是一个网页端管理工具。 WebYaST设备的SUSE Linux Enterprise (SLE) 11版本中的yast2-webclient中的WebYaST使用嵌入设备图像的固定密钥,远程攻击者可以利用这一密钥信息欺骗会话cookies。
CVSS Information
N/A
Vulnerability Type
N/A