Vulnerability Name: | CVE-2000-0970 (CCN-5396) | ||||||||
Assigned: | 2000-10-23 | ||||||||
Published: | 2000-10-23 | ||||||||
Updated: | 2018-10-30 | ||||||||
Summary: | IIS 4.0 and 5.0 .ASP pages send the same Session ID cookie for secure and insecure web sessions, which could allow remote attackers to hijack the secure web session of the user if that user moves to an insecure session, aka the "Session ID Cookie Marking" vulnerability. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: MITRE Type: CNA CVE-2000-0970 Source: CCN Type: ACROS Security Problem Report #2000-07-22-1-PUB Remote Retrieval Of IIS Session Cookies From Web Browsers Source: MISC Type: UNKNOWN http://www.acrossecurity.com/aspr/ASPR-2000-07-22-1-PUB.txt Source: CCN Type: CIAC Information Bulletin L-010 Microsoft IIS "Cookie Marking" Vulnerability Source: CCN Type: Microsoft Security Bulletin MS00-080 FAQ Microsoft Security Bulletin (MS00-080): Frequently Asked Questions Source: CCN Type: Microsoft Security Bulletin MS00-080 Patch Available for "Session ID Cookie Marking" Vulnerability Source: CCN Type: Microsoft Security Bulletin MS01-041 Malformed RPC Request Can Cause Service Failure Source: CCN Type: Microsoft Security Bulletin MS02-001 Trusting Domains Do Not Verify Domain Membership of SIDs in Authorization Data Source: CCN Type: Microsoft Security Bulletin MS02-018 Cumulative Patch for Internet Information Services (Q319733) Source: CCN Type: Microsoft Security Bulletin MS02-062 Cumulative Patch for Internet Information Service (Q327696) Source: CCN Type: Microsoft Security Bulletin MS03-018 Cumulative Patch for Internet Information Service (811114) Source: OSVDB Type: UNKNOWN 7265 Source: CCN Type: OSVDB ID: 7265 Microsoft IIS .ASP Session ID Disclosure and Hijacking Source: CCN Type: BID-1832 Microsoft IIS 4.0/5.0 Session ID Cookie Disclosure Vulnerability Source: MS Type: UNKNOWN MS00-080 Source: XF Type: UNKNOWN session-cookie-remote-retrieval(5396) Source: XF Type: UNKNOWN session-cookie-remote-retrieval(5396) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |