CVE-2013-6994

OpenText Exceed OnDemand 8 - Session Fixation via Cleartext Session ID Transmission

Title source: llm
STIX 2.1

Description

OpenText Exceed OnDemand (EoD) 8 transmits the session ID in cleartext, which allows remote attackers to perform session fixation attacks by sniffing the network.

References (1)

Core 1
Core References

Scores

EPSS 0.0118
EPSS Percentile 63.7%

Details

CWE
CWE-310
Status published
Products (1)
opentext/exceed_ondemand 8.0
Published May 19, 2014
Tracked Since Feb 18, 2026