6.4
CVSSv2

CVE-2013-6994

Published: 19/05/2014 Updated: 19/05/2014
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

OpenText Exceed OnDemand (EoD) 8 transmits the session ID in cleartext, which allows remote malicious users to perform session fixation attacks by sniffing the network.

Vulnerable Product Search on Vulmon Subscribe to Product

opentext exceed ondemand 8.0

Github Repositories

Exceed OnDemand MITM proof-of-concept

Exceed onDemand (EoD) is a dependable managed application access solution designed for enterprises It offers pixel perfect drawing, low cost scalability and trusted security access over any network connection Vulnerabilities are present in the current version of the software: Product URL: connectivityopentextcom/products/exceed-ondemandaspx Product Name: OpenText E