PaperThin CommonSpot prior to 7.0.2 and 8.x prior to 8.0.3 relies on an HTTP session for entering credentials on login pages, which allows remote malicious users to obtain sensitive information by sniffing the network.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
paperthin commonspot content server |
||
paperthin commonspot content server 8.0.2 |
||
paperthin commonspot content server 8.0.1 |
||
paperthin commonspot content server 8.0.0 |