cgi-bin/makecgi-pro in Iomega StorCenter Pro generates predictable session IDs, which allows remote malicious users to hijack active sessions and gain privileges via brute force guessing attacks on the session_id parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
iomega storcenter_pro_firmware - |