5.3
CVSSv3

CVE-2023-38357

Published: 01/08/2023 Updated: 04/08/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Session tokens in RWS WorldServer 11.7.3 and previous versions have a low entropy and can be enumerated, leading to unauthorized access to user sessions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rws worldserver

Exploits

RWS WorldServer versions 1173 and below suffer from a session token enumeration vulnerability ...