CVE-2026-71302 - Toptech TMS7 and TopHAT Session Fixation
CVE ID :CVE-2026-71302
Published : Sept. 29, 2026, 10:18 p.m. | 54 minutes ago
Description :The application accepts user-supplied session identifiers and does not regenerate the session ID after authentication. This allows an attacker to predefine a session ID and reuse it after victim authentication, resulting in session takeover.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 29, 2026, 10:18 p.m. | 54 minutes ago
Description :The application accepts user-supplied session identifiers and does not regenerate the session ID after authentication. This allows an attacker to predefine a session ID and reuse it after victim authentication, resulting in session takeover.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...