CVE-2007-4188

Session fixation vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to hijack administrative web sessions via unspecified vectors.
Configurations

Configuration 1 (hide)

cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*

History

01 Oct 2021, 15:05

Type Values Removed Values Added
References (BUGTRAQ) http://www.securityfocus.com/archive/1/476017/100/0/threaded - (BUGTRAQ) http://www.securityfocus.com/archive/1/476017/100/0/threaded - Third Party Advisory, VDB Entry
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/35953 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/35953 - Broken Link, Third Party Advisory, VDB Entry
References (VUPEN) http://www.vupen.com/english/advisories/2007/2719 - (VUPEN) http://www.vupen.com/english/advisories/2007/2719 - Third Party Advisory
References (CONFIRM) http://www.joomla.org/content/view/3677/1/ - (CONFIRM) http://www.joomla.org/content/view/3677/1/ - Vendor Advisory
CWE CWE-287 CWE-384
CPE cpe:2.3:a:joomla:joomla:*:*:*:*:*:*:*:* cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*

Information

Published : 2007-08-08 01:17

Updated : 2023-12-10 10:40


NVD link : CVE-2007-4188

Mitre link : CVE-2007-4188

CVE.ORG link : CVE-2007-4188


JSON object : View

Products Affected

joomla

  • joomla\!
CWE
CWE-384

Session Fixation