CVE-2026-1758: Session Fixation
Published Sep 15, 2026
·Updated
Session fixation vulnerability in Secomea GateManager (webserver module) allows Session Fixation.
This issue affects GateManager: 11.5;0, 11.4.625515072:0.
Fixed in Version 11.6 or 11.4.626194074 and above
Affected Software
2 affected components
Secomea GateManager (webserver module)>11.5;0<=11.4.625515072:0
Secomea GateManager (webserver module)<11.6, >=11.4.626194074
Event History
Sep 15, 2026
CVE Published
via MITRE·10:51 AM
Data Sourced
via MITRE·10:51 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which GateManager versions are affected?
Affected versions are GateManager 11.5 and 11.4.625515072. The issue is fixed in version 11.6 and in 11.4.626194074 or later.
2
What access does an attacker need to exploit this issue?
The vulnerability is network-accessible and requires no attacker privileges. Exploitation requires user interaction.
3
What is the potential impact of successful exploitation?
Successful exploitation can result in high impact to confidentiality and integrity, with low impact to availability.