Summer Pearl Group Vacation Rental Management Platform Insufficient Session Expiration Vulnerability
Vulnerability
A vulnerability exists in the Summer Pearl Group Vacation Rental Management Platform in versions prior to 1.0.2, where active user sessions are not properly invalidated after a password change. This flaw allows an attacker with a valid session token to retain access to the account, even after the user has changed their password. This issue violates standard session management security practices and can lead to account compromise and unauthorized access.
Impact
Exploitation of this vulnerability can result in unauthorized access to user accounts, allowing attackers to maintain access even after a password change.
Remediation
Users can upgrade to Summer Pearl Group Vacation Rental Management Platform version 1.0.2 or later to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
