CVE-2026-1758 PUBLISHED

Session Fixation

Assigner: Secomea
Reserved: 02.02.2026 Published: 15.09.2026 Updated: 15.09.2026

Session fixation vulnerability in Secomea GateManager (webserver module) allows Session Fixation.

This issue affects GateManager: 11.5;0, 11.4.625515072:0.

Fixed in Version 11.6 or 11.4.626194074 and above

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L
CVSS Score: 8.3

Product Status

Vendor Secomea
Product GateManager
Versions Default: unaffected
  • Version 11.5;0, 11.4.625515072:0 is affected

References

Problem Types

  • CWE-384 Session fixation CWE

Impacts

  • CAPEC-61 Session Fixation