Vulnerabilities > CVE-2001-1532 - Remote Security vulnerability in Webx

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
web-crossing

Summary

WebX stores authentication information in the HTTP_REFERER variable, which is included in URL links within bulletin board messages posted by users, which could allow remote attackers to hijack user sessions.

Vulnerable Configurations

Part Description Count
Application
Web_Crossing
1