CVE@CVEnewDisclosure
The CVE describes an improper session management flaw that allows session hijacking via IP spoofing in GCOM EPON 1GE ONU, but no PoC, exploit, or patch details are provided.
CRAC Learning - Tech@cracbotDisclosure
The post announces CVE‑2025‑71056, noting its high CVSS score and that it stems from improper session management leading to session hijacking, but offers no PoC, exploit, or patch details.
CRAC Learning - Tech@cracbotDisclosure
A critical session hijacking vulnerability (CVE-2025-71056) has been disclosed for GCOM EPON 1GE ONU, with no PoC, exploit, or patch details provided and no evidence of active exploitation.
Vulmon Vulnerability Feed@VulmonFeedsGeneral
The text references a session hijacking vulnerability (CVE-2025-71056) in a GCOM EPON device but provides no further details such as PoC, exploit, patch, or active exploitation.