Psi Probe Denial-of-Service Vulnerability via Session Expiration Endpoint

Vulnerability

A denial-of-service vulnerability has been identified in Psi Probe versions through 5.3.0. The issue arises in the Session Handler component, specifically within the ExpireSessionsController.java file, in the handleRequestInternal function. This vulnerability allows authenticated users with the 'probeuser' role to terminate multiple user sessions simultaneously through the '/app/expire_list.htm' endpoint. The application processes these bulk session expiration requests without validating session ownership, enabling low-privileged users to log out multiple users across different web applications with a single request.

Impact

Exploitation of this vulnerability can lead to widespread denial-of-service, forcing multiple users to re-authenticate and potentially overwhelming authentication systems. Additionally, it can disrupt critical administrative operations by logging out entire teams simultaneously.

Reproduction

To reproduce this vulnerability, authenticate to Psi Probe with 'probeuser' credentials. Then, send a bulk expiration request to the '/app/expire_list.htm' endpoint, specifying multiple session IDs in the 'sid_webapp' parameter. The application will terminate all specified sessions immediately, regardless of ownership.

Remediation

It is recommended to implement ownership validation and access controls in the ExpireSessionsController. Additionally, adding security constraints in the web.xml file to restrict bulk operations to users with administrative privileges could help mitigate this vulnerability.

Added: Feb 27, 2026, 12:34 AM
Updated: Feb 27, 2026, 12:34 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
3.1
exploitability
6.6
remediation
0.0
relevance
3.3
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.