Skip to main content

CVE detail

CVE-2015-0914

EasyCTF before 1.4 does not validate the session ID, which allows remote attackers to obtain access via a crafted HTTP request.

CVSS 5.0 · Medium