A vulnerability, which was classified as problematic, was found in SourceCodester Online Graduate Tracer System 1.0. Affected is an unknown function of the file admin/. The manipulation leads to session expiration. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-224994 is the identifier assigned to this vulnerability.
According to WASC, "Insufficient Session Expiration is when a web site permits an attacker to reuse old session credentials or session IDs for authorization."
Link | Tags |
---|---|
https://vuldb.com/?id.224994 | third party advisory vdb entry technical description |
https://vuldb.com/?ctiid.224994 | signature third party advisory vdb entry permissions required |
https://github.com/Jlan45/OGTSFCOIA/blob/main/unauthorizedaccess.md | third party advisory exploit |