Description
HCL OneTest Performance V9.5, V10.0, V10.1 contains an inadequate session timeout, which could allow an attacker time to guess and use a valid session ID.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-6400 | HCL OneTest Performance V9.5, V10.0, V10.1 contains an inadequate session timeout, which could allow an attacker time to guess and use a valid session ID. |
References
History
No history.
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2024-08-04T12:39:36.174Z
Reserved: 2020-06-17T00:00:00.000Z
Link: CVE-2020-14247
No data.
Status : Modified
Published: 2021-02-04T07:15:13.277
Modified: 2026-06-17T02:54:27.217
Link: CVE-2020-14247
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-613
Insufficient Session Expiration
EUVD