Skip to content
Noroxi

CWE-6 · 1 records

J2EE Misconfiguration: Insufficient Session-ID Length

CVEs in this class

1 records

  • In Eclipse Jetty versions 9.4.0 through 9.4.8, when using the optional Jetty provided FileSessionDataStore for persistent storage of HttpSes

    HighCVSS 8.8No exploitEPSS 3%

    eclipse · jettyJun 22, 2018

All vulnerability classes