DAEnetIP4 METO v1.25 contains improper session management in the /login_ok.htm endpoint, letting attackers hijack sessions, exploit requires attacker to control or intercept session tokens.
id: CVE-2025-28242
info:
name: DAEnetIP4 METO v1.25 - Session Hijacking
author: 0x_Akoko
seve
...