"TITLE":"Insufficient Session Expiration in octoprint/octoprint"
},
"affects":{
"vendor":{
"vendor_data":[
{
"product":{
"product_data":[
{
"product_name":"octoprint/octoprint",
"version":{
"version_data":[
{
"version_affected":"<",
"version_value":"1.8.3"
}
]
}
}
]
},
"vendor_name":"octoprint"
}
]
}
},
"data_format":"MITRE",
"data_type":"CVE",
"data_version":"4.0",
"description":{
"description_data":[
{
"lang":"eng",
"value":"If an attacker comes into the possession of a victim's OctoPrint session cookie through whatever means, the attacker can use this cookie to authenticate as long as the victim's account exists."