This issue affects Avantra: before 25.3.1.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://support.avantra.com/hc/en-us/articles/5533929912351 |
|
Tue, 02 Jun 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Avantra
Avantra avantra Linux Linux linux Kernel Microsoft Microsoft windows |
|
| CPEs | cpe:2.3:a:avantra:avantra:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Avantra
Avantra avantra Linux Linux linux Kernel Microsoft Microsoft windows |
Fri, 22 May 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 22 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Syslink Software Ag
Syslink Software Ag avantra |
|
| Vendors & Products |
Syslink Software Ag
Syslink Software Ag avantra |
Fri, 22 May 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insufficient session expiration vulnerability in syslink software AG Avantra on Linux, Windows allows Reusing Session IDs (aka Session Replay). This issue affects Avantra: before 25.3.1. | |
| Title | Insecure session handling on metrics web server | |
| Weaknesses | CWE-613 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: NCSC.ch
Published:
Updated: 2026-05-22T15:05:13.802Z
Reserved: 2026-05-15T11:49:57.345Z
Link: CVE-2026-8670
Updated: 2026-05-22T15:05:09.592Z
Status : Analyzed
Published: 2026-05-22T14:16:29.640
Modified: 2026-06-17T11:04:16.037
Link: CVE-2026-8670
No data.
OpenCVE Enrichment
Updated: 2026-05-22T15:45:16Z