Insufficient Session Expiration in GitHub repository admidio/admidio prior to 4.1.9.
According to WASC, "Insufficient Session Expiration is when a web site permits an attacker to reuse old session credentials or session IDs for authorization."
Link | Tags |
---|---|
https://huntr.dev/bounties/1c406a4e-15d0-4920-8495-731c48473ba4 | third party advisory exploit |
https://github.com/admidio/admidio/commit/e84e472ebe517e2ff5795c46dc10b5f49dc4d46a | third party advisory patch |