Unrated severityNVD Advisory· Published Feb 26, 2010· Updated Apr 29, 2026
CVE-2009-4655
CVE-2009-4655
Description
The dhost web service in Novell eDirectory 8.8.5 uses a predictable session cookie, which makes it easier for remote attackers to hijack sessions via a modified cookie.
Affected products
1- cpe:2.3:a:novell:edirectory:8.8.5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.