Vulnerability Details CVE-2024-13280
Insufficient Session Expiration vulnerability in Drupal Persistent Login allows Forceful Browsing.This issue affects Persistent Login: from 0.0.0 before 1.8.0, from 2.0.* before 2.2.2.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 35.2%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2024-13280
-
cpe:2.3:a:persistent_login_project:persistent_login:*
-
cpe:2.3:a:persistent_login_project:persistent_login:2.0.0
-
cpe:2.3:a:persistent_login_project:persistent_login:2.0.1
-
cpe:2.3:a:persistent_login_project:persistent_login:2.1.0
-
cpe:2.3:a:persistent_login_project:persistent_login:2.2.0
-
cpe:2.3:a:persistent_login_project:persistent_login:2.2.1