CVE-2020-5539

Publication date

2020-03-02 07:00:24

Family

jpcert

State

PUBLISHED

Description

GRANDIT Ver.1.6, Ver.2.0, Ver.2.1, Ver.2.2, Ver.2.3, and Ver.3.0 do not properly manage sessions, which allows remote attackers to impersonate an arbitrary user and then alter or disclose the information via unspecified vectors.