Vulnerability Details CVE-1999-0910
Microsoft Site Server and Commercial Internet System (MCIS) do not set an expiration for a cookie, which could then be cached by a proxy and inadvertently used by a different user.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.196
EPSS Ranking 95.0%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-1999-0910
-
cpe:2.3:a:microsoft:commercial_internet_system:2.0
-
cpe:2.3:a:microsoft:commercial_internet_system:2.5
-
cpe:2.3:a:microsoft:site_server:3.0
-
cpe:2.3:a:microsoft:site_server_commerce:3.0