DAViCal Andrew's Web Libraries (AWL) 0.56-2

CPE Details

DAViCal Andrew's Web Libraries (AWL) 0.56-2
0.56-2
2020-04-27
15h54 +00:00
2020-04-27
15h54 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:davical:andrew\'s_web_libraries:0.56-2:*:*:*:*:*:*:*

Informations

Vendor

davical

Product

andrew\'s_web_libraries

Version

0.56-2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-11728 2020-04-15 13h37 +00:00 An issue was discovered in DAViCal Andrew's Web Libraries (AWL) through 0.60. Session management does not use a sufficiently hard-to-guess session key. Anyone who can guess the microsecond time (and the incrementing session_id) can impersonate a session.
7.5
High
CVE-2020-11729 2020-04-15 13h37 +00:00 An issue was discovered in DAViCal Andrew's Web Libraries (AWL) through 0.60. Long-term session cookies, uses to provide long-term session continuity, are not generated securely, enabling a brute-force attack that may be successful.
9.8
Critical