CentreStack before 17.4 contains a session variable injection vulnerability that allows unauthenticated attackers to inject arbitrary session variables by embedding newline and tab characters into a crafted AccountName parameter posted to the SelectProvider.aspx endpoint. Attackers can exploit the lack of input sanitization in the custom session serialization format to inject a resellerid session variable, bypassing the IsValidRSession authentication check and gaining unauthorized access to management pages.
Metrics
Affected Vendors & Products
References
History
Fri, 14 Aug 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 14 Aug 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:gladinet:centrestack:*:*:*:*:*:*:*:* |
Thu, 30 Jul 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gladinet
Gladinet centrestack |
|
| Vendors & Products |
Gladinet
Gladinet centrestack |
Thu, 30 Jul 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CentreStack before 17.4 contains a session variable injection vulnerability that allows unauthenticated attackers to inject arbitrary session variables by embedding newline and tab characters into a crafted AccountName parameter posted to the SelectProvider.aspx endpoint. Attackers can exploit the lack of input sanitization in the custom session serialization format to inject a resellerid session variable, bypassing the IsValidRSession authentication check and gaining unauthorized access to management pages. | |
| Title | CentreStack < 17.4 Session Injection via SelectProvider.aspx | |
| Weaknesses | CWE-116 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-07-30T12:24:44.549Z
Updated: 2026-08-14T16:50:19.787Z
Reserved: 2026-06-12T20:20:02.947Z
Link: CVE-2026-54364
Updated: 2026-07-30T12:53:03.576Z
Status : Deferred
Published: 2026-07-30T13:16:51.367
Modified: 2026-07-30T16:45:00.353
Link: CVE-2026-54364
No data.