AS24-U1-000520 – The Apache web server must generate a session ID using as much of the character set as possible to reduce the risk of brute force.
Details Generating a session identifier (ID) that is not easily guessed through brute force is essential to deter several types...