Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-4655
Description:The dhost web service in Novell eDirectory 8.8.5 uses a predictable session cookie, which makes it easier for remote attackers to hijack sessions via a modified cookie.
Test IDs: 1.3.6.1.4.1.25623.1.0.800731  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-4655
http://www.metasploit.com/modules/auxiliary/admin/edirectory/edirectory_dhost_cookie
http://www.metasploit.com/redmine/projects/framework/repository/entry/modules/auxiliary/admin/edirectory/edirectory_dhost_cookie.rb
http://osvdb.org/60035
XForce ISS Database: edirectory-dhost-session-hijacking(56613)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56613




© 1998-2025 E-Soft Inc. All rights reserved.