CVE-2019-11641

Severity CVSS v4.0:
Pending analysis
Type:
CWE-330 Use of Insufficiently Random Value
Publication date:
01/05/2019
Last modified:
24/08/2020

Description

Anomali Agave (formerly Drupot) through 1.0.0 fails to avoid fingerprinting by including predictable data and minimal variation in size within HTML templates, giving attackers the ability to detect and avoid this system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:anomali:agave:*:*:*:*:*:*:*:* 1.0.0 (including)


References to Advisories, Solutions, and Tools