CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.0. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2014-6028
Severity
MEDIUM
CVSS
4
EPSS
1.71%
Original NVD Description
TorrentFlux 2.4 allows remote authenticated users to obtain other users' cookies via the cid parameter in an editCookies action to profile.php.