CVE-2023-2105: Session Fixation in alextselegidis/easyappointments
Published Apr 15, 2023
·Updated
Session Fixation in GitHub repository alextselegidis/easyappointments prior to 1.5.0.
Affected Software
1 affected component
EasyAppointments EasyAppointments<1.5.0
Remediation
Event History
Apr 15, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-2105?
CVE-2023-2105 is a vulnerability known as Session Fixation in the GitHub repository alextselegidis/easyappointments prior to version 1.5.0.
2
How severe is CVE-2023-2105?
CVE-2023-2105 has a severity level of 8.8 (high).
3
What is the affected software?
The affected software is Easyappointments Easyappointments prior to version 1.5.0.
4
How can CVE-2023-2105 be fixed?
To fix CVE-2023-2105, users should update their Easyappointments Easyappointments to version 1.5.0 or newer.
5
What is the Common Weakness Enumeration (CWE) for CVE-2023-2105?
The Common Weakness Enumeration (CWE) for CVE-2023-2105 is CWE-384 (Session Fixation).