CVE-2021-45025: High severity Rocketsoftware Ags-zena vulnerability
Published Jun 17, 2022
·Updated
ASG technologies ( A Rocket Software Company) ASG-Zena Cross Platform Server Enterprise Edition 4.2.1 is vulnerable to Cleartext Storage of Sensitive Information in a Cookie.
Affected Software
1 affected component
Rocketsoftware Ags-zena=4.2.1
Event History
Jun 17, 2022
CVE Published
via MITRE·11:57 AM
Data Sourced
via MITRE·11:57 AM
Description
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-45025?
CVE-2021-45025 has been classified with a medium severity level due to the risk of sensitive information leakage.
2
How do I fix CVE-2021-45025?
To mitigate CVE-2021-45025, ensure that sensitive data is not stored in cookies without encryption.
3
What type of sensitive information is affected by CVE-2021-45025?
CVE-2021-45025 affects the cleartext storage of sensitive information like session tokens or user credentials in cookies.
4
Which software versions are vulnerable to CVE-2021-45025?
CVE-2021-45025 specifically affects ASG-Zena Cross Platform Server Enterprise Edition version 4.2.1.
5
Are there any known exploits for CVE-2021-45025?
As of now, there are no publicly known exploits for CVE-2021-45025, but the vulnerability remains significant for data security.