Описание
Session fixation vulnerability in CubeCart before 5.2.9 allows remote attackers to hijack web sessions via the PHPSESSID parameter.
Session fixation vulnerability in CubeCart before 5.2.9 allows remote attackers to hijack web sessions via the PHPSESSID parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2014-2341
- https://exchange.xforce.ibmcloud.com/vulnerabilities/92526
- http://forums.cubecart.com/topic/48427-cubecart-529-relased
- http://secunia.com/advisories/57856
- http://www.exploit-db.com/exploits/32830
- http://www.osvdb.org/105784
- http://www.securityfocus.com/bid/66805
- http://www.securitytracker.com/id/1030086
Связанные уязвимости
nvd
почти 12 лет назад
Session fixation vulnerability in CubeCart before 5.2.9 allows remote attackers to hijack web sessions via the PHPSESSID parameter.