CVE-2018-1148

Publication date

2018-05-18 22:00:00

Family

tenable

State

PUBLISHED

Description

In Nessus before 7.1.0, Session Fixation exists due to insufficient session management within the application. An authenticated attacker could maintain system access due to session fixation after a user password change.