Information Exposure Through Query Strings in GET Request vulnerability in Broadcom DX NetOps Spectrum on Windows, Linux allows Session Hijacking.This issue affects DX NetOps Spectrum: 24.3.8 and earlier.
History

Mon, 12 Jan 2026 04:45:00 +0000

Type Values Removed Values Added
Description Information Exposure Through Query Strings in GET Request vulnerability in Broadcom DX NetOps Spectrum on Windows, Linux allows Session Hijacking.This issue affects DX NetOps Spectrum: 24.3.8 and earlier.
Title Spectrum session token in URL
First Time appeared Broadcom
Broadcom dx Netops Spectrum
Weaknesses CWE-598
CPEs cpe:2.3:a:broadcom:dx_netops_spectrum:24.3.8_and_earlier:*:linux:*:*:*:*:*
cpe:2.3:a:broadcom:dx_netops_spectrum:24.3.8_and_earlier:*:windows:*:*:*:*:*
cpe:2.3:a:broadcom:dx_netops_spectrum:24.3.9_and_later:*:linux:*:*:*:*:*
cpe:2.3:a:broadcom:dx_netops_spectrum:24.3.9_and_later:*:windows:*:*:*:*:*
Vendors & Products Broadcom
Broadcom dx Netops Spectrum
References
Metrics cvssV4_0

{'score': 2.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ca

Published:

Updated: 2026-01-12T04:35:06.225Z

Reserved: 2025-12-31T03:22:49.490Z

Link: CVE-2025-69270

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-01-12T05:16:10.900

Modified: 2026-01-12T05:16:10.900

Link: CVE-2025-69270

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.