CVE-2006-6969

unknown
Published 2022-05-01 · Modified 2024-02-12
CVSS v3
CVSS v2
VIR risk

Description

Jetty Uses Predictable Session Identifiers

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2006-6969.html

OS impact

OSVersionStatusFixed in
suse slesaffected

Package impact

EcosystemPackageVulnerableFixed
java Mavenorg.eclipse.jetty:jetty-server<4.2.274.2.27
java Mavenorg.eclipse.jetty:jetty-server>=5.1.0,<5.1.125.1.12
java Mavenorg.eclipse.jetty:jetty-server>=6.0.0,<6.0.26.0.2
java Mavenorg.eclipse.jetty:jetty-server>=6.1.0pre1,<6.1.0pre36.1.0pre3

References

Verify integrity in audit chain (admin only). AS-IS.