Andrew Bartlett discovered that DAViCal Andrew's Web Libraries (AWL) did not properly manage session keys. An attacker could possibly use this issue to impersonate a session. (CVE-2020-11728)
{ "availability": "No subscription required", "binaries": [ { "binary_version": "0.60-1+deb10u1ubuntu1", "binary_name": "awl-doc" }, { "binary_version": "0.60-1+deb10u1ubuntu1", "binary_name": "libawl-php" } ] }