Back to search
CVE-2021-46010
Published: Mar 30, 2022
Modified: Aug 4, 2024
PUBLISHED
Description
Totolink A3100R V5.9c.4577 suffers from Use of Insufficiently Random Values via the web configuration. The SESSION_ID is predictable. An attacker can hijack a valid session and conduct further malicious operations.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://totolink.com
x_refsource_MISC
http://a3100r.com
x_refsource_MISC
https://hackmd.io/Ynwm8NnQSiK0xm7QKuNteg
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now