keplerproject CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

keplerproject vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to keplerproject, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2014-2875 The session.lua library in CGILua 5.2 alpha 1 and 5.2 alpha 2 uses weak session IDs generated based on OS time, which allows remote attackers to hijack arbitrary sessions via a brute force attack. NOTE: CVE-2014-10399 and CVE-2014-10400 were SPLIT from this ID. [email protected] 6.1 0.57% 2020-02-06 2024-11-21
CVE-2014-10400 The session.lua library in CGILua 5.0.x uses sequential session IDs, which makes it easier for remote attackers to predict the session ID and hijack arbitrary sessions. NOTE: this vulnerability was SPLIT from CVE-2014-2875. [email protected] 6.1 0.46% 2020-02-06 2024-11-21
CVE-2014-10399 The session.lua library in CGILua 5.1.x uses the same ID for each session, which allows remote attackers to hijack arbitrary sessions. NOTE: this vulnerability was SPLIT from CVE-2014-2875. [email protected] 6.1 0.46% 2020-02-06 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence