CVE-2026-92749
CRITICAL
9,2
Source: [email protected]
Attack Vector: network
Attack Complexity: high
Privileges Required: none
User Interaction: none
Confidentiality: N/A
Integrity: N/A
Availability: N/A
HIGH
8,1
Source: [email protected]
Attack Vector: network
Attack Complexity: high
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high
Description
AI Translation Available
SafeLine through 9.4.1 derives the management console session-signing secret from a time-seeded math/rand generator, allowing attackers to reconstruct the key offline. Unauthenticated remote attackers who can bound the install timestamp can regenerate the secret and forge valid administrator session cookies to gain control of protected sites.
338
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
DraftCommon Consequences
Security Scopes Affected:
Access Control
Potential Impacts:
Bypass Protection Mechanism
Applicable Platforms
All platforms may be affected
https://github.com/chaitin/SafeLine/issues/1298
https://github.com/chaitin/SafeLine
https://github.com/chaitin/SafeLine/blob/v9.4.1/management/webserver/model/opti…
https://github.com/chaitin/SafeLine/blob/v9.4.1/management/webserver/utils/rand…
https://github.com/chaitin/SafeLine/issues/1298
https://www.vulncheck.com/advisories/safeline-through-9.4.1-authentication-bypa…