Gophish through 0.10.1 does not invalidate the gophish cookie upon logout.
References
Link | Resource |
---|---|
https://herolab.usd.de/security-advisories/usd-2020-0053/ | Exploit Third Party Advisory |
Configurations
Information
Published : 2020-10-28 13:15
Updated : 2020-10-30 13:40
NVD link : CVE-2020-24713
Mitre link : CVE-2020-24713
JSON object : View
CWE
CWE-613
Insufficient Session Expiration
Products Affected
getgophish
- gophish