VYPR
Unrated severityNVD Advisory· Published Feb 26, 2010· Updated Apr 29, 2026

CVE-2009-4655

CVE-2009-4655

Description

The dhost web service in Novell eDirectory 8.8.5 uses a predictable session cookie, which makes it easier for remote attackers to hijack sessions via a modified cookie.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.