HCL OneTest Performance V9.5, V10.0, V10.1 contains an inadequate session timeout, which could allow an attacker time to guess and use a valid session ID.
Software | From | Fixed in |
---|---|---|
hcltechsw / onetest_performance | 10.0.0 | 10.0.0.x |
hcltechsw / onetest_performance | 10.1.0 | 10.1.0.x |
hcltechsw / onetest_performance | 9.5.0 | 9.5.0.x |