Description
A CWE-613 “Insufficient Session Expiration” vulnerability in the web application, due to the session cookie “sessionid” lasting two weeks, facilitates session hijacking attacks against victims. This issue affects: AiLux imx6 bundle below version imx6_1.0.7-2.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-49892 | A CWE-613 “Insufficient Session Expiration” vulnerability in the web application, due to the session cookie “sessionid” lasting two weeks, facilitates session hijacking attacks against victims. This issue affects: AiLux imx6 bundle below version imx6_1.0.7-2. |
References
History
Wed, 23 Apr 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ailux
Ailux imx6 |
|
| CPEs | cpe:2.3:a:ailux:imx6:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ailux
Ailux imx6 |
Status: PUBLISHED
Assigner: Nozomi
Published:
Updated: 2024-08-12T17:30:54.064Z
Reserved: 2023-10-09T08:26:54.317Z
Link: CVE-2023-45600
Updated: 2024-08-02T20:21:16.712Z
Status : Analyzed
Published: 2024-03-05T12:15:47.613
Modified: 2025-04-23T17:29:47.447
Link: CVE-2023-45600
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD