Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
OpenConnect before 2.26 places the webvpn cookie value in the debugging output, which might allow remote attackers to obtain sensitive information by reading this output, as demonstrated by output posted to the public openconnect-devel mailing list.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Infradead openconnect信息泄露漏洞
Vulnerability Description
OpenConnect 是思科AnyConnect VPN的一个开放客户端。 OpenConnect 2.26之前的版本在调试输出中放置了webvpn cookie值。远程攻击者可以通过发送到公共openconnect-devel邮件列表的输出获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A