CVE-2022-4070: Insufficient Session Expiration in librenms/librenms
Published Nov 20, 2022
·Updated
Insufficient Session Expiration in GitHub repository librenms/librenms prior to 22.10.0.
Affected Software
1 affected component
librenms librenms<22.10.0
Remediation
Event History
Nov 20, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-4070?
CVE-2022-4070 is a vulnerability found in the GitHub repository librenms/librenms prior to version 22.10.0.
2
What is the severity of CVE-2022-4070?
CVE-2022-4070 has a severity rating of 9.8 (critical).
3
How does CVE-2022-4070 affect Librenms Librenms?
CVE-2022-4070 affects Librenms Librenms versions prior to 22.10.0.
4
How do I fix CVE-2022-4070?
To fix CVE-2022-4070, update your Librenms Librenms installation to version 22.10.0 or later.
5
Where can I find more information about CVE-2022-4070?
You can find more information about CVE-2022-4070 in the following references: [GitHub Commit](https://github.com/librenms/librenms/commit/ce8e5f3d056829bfa7a845f9dc2757e21e419ddc) and [Huntr Bounty Report](https://huntr.dev/bounties/72d426bb-b56e-4534-88ba-0d11381b0775).