CVE-2004-0944

The web management interface for Mitel 3300 Integrated Communications Platform (ICP) before 4.2.2.11 generates easily predictable web session IDs, which allows remote attackers to hijack other sessions via the parentsessionid cookie.
Configurations

Configuration 1 (hide)

cpe:2.3:h:mitel:mitel_3300_integrated_communication_platform:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-02-28 05:00

Updated : 2023-12-10 10:17


NVD link : CVE-2004-0944

Mitre link : CVE-2004-0944

CVE.ORG link : CVE-2004-0944


JSON object : View

Products Affected

mitel

  • mitel_3300_integrated_communication_platform