BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
[RT-SA-2015-003] Alcatel-Lucent OmniSwitch Web Interface Weak Session ID Jun 10 2015 11:24AM
RedTeam Pentesting GmbH (release redteam-pentesting de)
Advisory: Alcatel-Lucent OmniSwitch Web Interface Weak Session ID

During a penetration test, RedTeam Pentesting discovered a vulnerability
in the management web interface of an Alcatel-Lucent OmniSwitch 6450.
This interface uses easily guessable session IDs, which allows attackers
to authenticate a...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus