CVE-2023-45687
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
A session fixation vulnerability in South River Technologies' Titan MFT and Titan SFTP servers on Linux and Windows allows an attacker to bypass the server's authentication if they can trick an administrator into authorizating a session id of their choosing
Affected (4)
Products: Southrivertech: Titan Mft Server, Titan Sftp Server
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.0.18 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2.0.18 |
References (4)
Source: cve@rapid7.com
Vendor Advisory
Source: cve@rapid7.com
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Timeline
No history available yet.