An improper session validation allows an unauthenticated attacker to cause certain request notifications to be executed in the context of an incorrect user by spoofing the client IP address.
                
            CVSS
                No CVSS.
References
                    Configurations
                    No configuration.
History
                    05 Feb 2025, 05:15
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
 | |
| References | 
 | 
 | 
30 Jan 2025, 20:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-384 | 
30 Jan 2025, 19:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-01-30 19:15
Updated : 2025-02-05 05:15
NVD link : CVE-2025-24502
Mitre link : CVE-2025-24502
CVE.ORG link : CVE-2025-24502
JSON object : View
Products Affected
                No product.
CWE
                
                    
                        
                        CWE-384
                        
            Session Fixation
