Vulnerability CVE-2023-48929


Published: 2023-12-08   Modified: 2023-12-14

Description:
Franklin Fueling Systems System Sentinel AnyWare (SSA) version 1.6.24.492 is vulnerable to Session Fixation. The 'sid' parameter in the group_status.asp resource allows an attacker to escalate privileges and obtain sensitive information.

Type:

CWE-384

(Session Fixation)

Affected software
Franklin-electric -> System sentinel anyware 

 References:
https://github.com/MatJosephs/CVEs/tree/main/CVE-2023-48929

Copyright 2024, cxsecurity.com

 

Back to Top