CVE-2001-1534

LOW
CVSS v3
2.1CVSS v2
0.17% EPSS (exploit probability)
CWE-384CWE

Description

mod_usertrack in Apache 1.3.11 through 1.3.20 generates session ID's using predictable information including host IP address, system time and server process ID, which allows local users to obtain session ID's and bypass authentication when these session ID's are used for authentication.

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references