CVE-2019-19611

An issue was discovered in Halvotec RaQuest 10.23.10801.0. One of the exposed web services allows an anonymous user to access the list of connected users as well as the session cookie for each user. Fixed in Release 10.24.11206.1
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:halvotec:raquest:10.23.10801.0:*:*:*:*:*:*:*

History

21 Dec 2021, 00:54

Type Values Removed Values Added
CWE CWE-200 NVD-CWE-noinfo

Information

Published : 2020-03-13 19:15

Updated : 2024-02-04 21:00


NVD link : CVE-2019-19611

Mitre link : CVE-2019-19611

CVE.ORG link : CVE-2019-19611


JSON object : View

Products Affected

halvotec

  • raquest