Vulnerabilities > Insufficient Session Expiration

DATE CVE VULNERABILITY TITLE RISK
2024-06-14 CVE-2024-5995 The notification emails sent by Soar Cloud HR Portal contain a link with a embedded session.
network
low complexity
CWE-613
8.8
2024-06-08 CVE-2024-4680 Insufficient Session Expiration vulnerability in Zenml 0.56.3
A vulnerability in zenml-io/zenml version 0.56.3 allows attackers to reuse old session credentials or session IDs due to insufficient session expiration.
network
low complexity
zenml CWE-613
8.8
2024-02-09 CVE-2023-45187 Insufficient Session Expiration vulnerability in IBM Engineering Lifecycle Optimization 7.0.2/7.0.3
IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.
network
low complexity
ibm CWE-613
8.8
2024-02-02 CVE-2023-50936 Insufficient Session Expiration vulnerability in IBM Powersc 1.3/2.0/2.1
IBM PowerSC 1.3, 2.0, and 2.1 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.
network
low complexity
ibm CWE-613
8.8
2024-01-26 CVE-2024-0942 Insufficient Session Expiration vulnerability in Totolink N200Re-V5 Firmware 9.3.5U.6255B20211224
A vulnerability was found in Totolink N200RE V5 9.3.5u.6255_B20211224.
network
low complexity
totolink CWE-613
4.3
2024-01-26 CVE-2024-0943 Insufficient Session Expiration vulnerability in Totolink N350Rt Firmware 9.3.5U.6255
A vulnerability was found in Totolink N350RT 9.3.5u.6255.
network
low complexity
totolink CWE-613
5.3
2024-01-26 CVE-2024-0944 Insufficient Session Expiration vulnerability in Totolink T8 Firmware 4.1.5Cu.83320220905
A vulnerability was found in Totolink T8 4.1.5cu.833_20220905.
network
low complexity
totolink CWE-613
5.3
2024-01-18 CVE-2024-22403 Insufficient Session Expiration vulnerability in Nextcloud Server
Nextcloud server is a self hosted personal cloud system.
network
high complexity
nextcloud CWE-613
3.7
2024-01-09 CVE-2024-0350 Insufficient Session Expiration vulnerability in Engineers Online Portal Project Engineers Online Portal 1.0
A vulnerability was found in SourceCodester Engineers Online Portal 1.0.
network
low complexity
engineers-online-portal-project CWE-613
6.5
2024-01-07 CVE-2024-0260 Insufficient Session Expiration vulnerability in Engineers Online Portal Project Engineers Online Portal 1.0
A vulnerability, which was classified as problematic, was found in SourceCodester Engineers Online Portal 1.0.
network
low complexity
engineers-online-portal-project CWE-613
7.5