cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2018-1127,https://securityvulnerability.io/vulnerability/CVE-2018-1127,,Tendrl API in Red Hat Gluster Storage before 3.4.0 does not immediately remove session tokens after a user logs out. Session tokens remain active for a few minutes allowing attackers to replay tokens acquired via sniffing/MITM attacks and authenticate as the target user.,Red Hat,Red Hat Gluster Storage,4.2,MEDIUM,0.0023399998899549246,false,false,false,false,,false,false,2018-09-11T15:00:00.000Z,0