Vdesk Hangupphp3 Exploit

The Vdesk Hangup PHP 3 exploit has several implications:

Early versions of F5 FirePass (such as 6.0.2) failed to properly sanitize user-supplied input in session management files. Attackers could craft a malicious link that, if clicked by an authenticated administrator or user, would force their browser to execute actions—such as terminating sessions or modifying account settings—without their consent. vdesk hangupphp3 exploit