SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Iomega StorCenter Pro Authentication Bypass

Category: WEB-ATTACKS      

cgi-bin/makecgi-pro in Iomega StorCenter Pro generates predictable session IDs, which allows remote attackers to hijack active sessions and gain privileges via brute force guessing attacks on the session_id parameter.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2367


Relevant Information