Описание
Session fixation vulnerability in Zen Cart 1.3.7 and earlier allows remote attackers to hijack web sessions by setting the Cookie parameter.
Session fixation vulnerability in Zen Cart 1.3.7 and earlier allows remote attackers to hijack web sessions by setting the Cookie parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-3597
- http://osvdb.org/37836
- http://secunia.com/advisories/25942
- http://securityreason.com/securityalert/2866
- http://sourceforge.net/project/shownotes.php?release_id=474574&group_id=83781
- http://superb-east.dl.sourceforge.net/sourceforge/zencart/zen-cart-v1.3.7-admin-patch.zip
- http://www.securityfocus.com/archive/1/472875/100/0/threaded
Связанные уязвимости
nvd
больше 18 лет назад
Session fixation vulnerability in Zen Cart 1.3.7 and earlier allows remote attackers to hijack web sessions by setting the Cookie parameter.