MEDIUM · 5.8

CVE-2008-5809

futomi CGI Cafe Access Analyzer CGI Standard 4.0.1 and earlier and Access Analyzer CGI Professional 4.11.3 and earlier use a predictable session id, which makes it easier for remote attackers to hijac...

Vulnerability Description

futomi CGI Cafe Access Analyzer CGI Standard 4.0.1 and earlier and Access Analyzer CGI Professional 4.11.3 and earlier use a predictable session id, which makes it easier for remote attackers to hijack sessions, and obtain sensitive information about analysis results, via a modified id.

CVSS Score

5.8

MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:N
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
FutomiAccess Analyzer Cgi<= 4.0.1

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-5809?

CVE-2008-5809 is a vulnerability with a CVSS score of 5.8 (MEDIUM). futomi CGI Cafe Access Analyzer CGI Standard 4.0.1 and earlier and Access Analyzer CGI Professional 4.11.3 and earlier use a predictable session id, which makes it easier for remote attackers to hijac...

How severe is CVE-2008-5809?

CVE-2008-5809 has been rated MEDIUM with a CVSS base score of 5.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-5809?

Check the references section above for vendor advisories and patch information. Affected products include: Futomi Access Analyzer Cgi.