Description
SurveyKing v0.2.0 was discovered to retain users' session cookies after logout, allowing attackers to login to the system and access data using the browser cache when the user exits the application.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-30251 | SurveyKing v0.2.0 was discovered to retain users' session cookies after logout, allowing attackers to login to the system and access data using the browser cache when the user exits the application. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T04:42:50.032Z
Reserved: 2022-02-21T00:00:00.000Z
Link: CVE-2022-25590
No data.
Status : Modified
Published: 2022-03-25T19:15:10.637
Modified: 2024-11-21T06:52:23.977
Link: CVE-2022-25590
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD