CVE-2010-1434

Joomla! Core is prone to a session fixation vulnerability. An attacker may leverage this issue to hijack an arbitrary session and gain access to sensitive information, which may help in launching further attacks. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.15 are vulnerable.
Configurations

Configuration 1 (hide)

cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*

History

25 Jun 2021, 15:36

Type Values Removed Values Added
References (MISC) https://www.acunetix.com/vulnerabilities/web/joomla-core-1-5-x-session-fixation-1-5-0-1-5-15/ - (MISC) https://www.acunetix.com/vulnerabilities/web/joomla-core-1-5-x-session-fixation-1-5-0-1-5-15/ - Third Party Advisory
References (MISC) https://developer.joomla.org/security-centre/309-20100423-core-sessation-fixation.html - (MISC) https://developer.joomla.org/security-centre/309-20100423-core-sessation-fixation.html - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
CWE CWE-384
CPE cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*

21 Jun 2021, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-21 23:15

Updated : 2023-12-10 13:55


NVD link : CVE-2010-1434

Mitre link : CVE-2010-1434

CVE.ORG link : CVE-2010-1434


JSON object : View

Products Affected

joomla

  • joomla\!
CWE
CWE-384

Session Fixation