Home
LOW: 2.3 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:LDefault status
unaffected
24.3.8 and earlier (custom)
affected
24.3.9 and later (custom)
unaffected
Description
Information Exposure Through Query Strings in GET Request vulnerability in Broadcom DX NetOps Spectrum on Windows, Linux allows Session Hijacking.This issue affects DX NetOps Spectrum: 24.3.8 and earlier.
Problem types
CWE-598 Information Exposure Through Query Strings in GET Request
Product status
24.3.8 and earlier (custom)
24.3.9 and later (custom)
Credits
Jean-Michel Huguet and Jorge Escabias from NATO Cyber Security Centre
References
support.broadcom.com/...l/content/SecurityAdvisories/0/36756