Vulnerabilities
Vulnerable Software
Powauth:  >> Pow  >> 1.0.2  Security Vulnerabilities
In Pow (Hex package) before 1.0.16, the use of Plug.Session in Pow.Plug.Session is susceptible to session fixation attacks if a persistent session store is used for Plug.Session, such as Redis or a database. Cookie store, which is used in most Phoenix apps, doesn't have this vulnerability.
CVSS Score
6.5
EPSS Score
0.003
Published
2020-01-09


Contact Us

Shodan ® - All rights reserved