Summer Pearl Group Vacation Rental Management Platform Insufficient Session Expiration Vulnerability

Vulnerability

A vulnerability exists in the Summer Pearl Group Vacation Rental Management Platform in versions prior to 1.0.2, where active user sessions are not properly invalidated after a password change. This flaw allows an attacker with a valid session token to retain access to the account, even after the user has changed their password. This issue violates standard session management security practices and can lead to account compromise and unauthorized access.

Impact

Exploitation of this vulnerability can result in unauthorized access to user accounts, allowing attackers to maintain access even after a password change.

Remediation

Users can upgrade to Summer Pearl Group Vacation Rental Management Platform version 1.0.2 or later to address this vulnerability.

Added: Oct 31, 2025, 9:17 PM
Updated: Oct 31, 2025, 9:17 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
6.6
remediation
7.7
relevance
0.9
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.