Bugzilla – Bug 1131480
VUL-0: CVE-2018-4300: cups: Session cookie generated by the CUPS web interface is easy to guess
Last modified: 2020-08-20 02:17:45 UTC
The session cookie generated by the CUPS web interface was easy to guess on Linux, allowing unauthorized scripted access to the web interface when the web interface is enabled. This issue affected versions prior to v2.2.10.
And what about our bug#1115750 ?
It seems a typo duplicate of CVE-2018-4700. I filed a dup request with Mitre.
CVE-2018-4300 versus CVE-2018-4700 confusion also at CUPS upstream:
This is the result of my query with Mitre I think. lets see what happens.