|
|
Simple Machines Forum PHPSessionID Session Fixation Vulnerability
|
Bugtraq ID:
|
24482
|
|
Class:
|
Design Error
|
|
CVE:
|
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Jun 14 2007 12:00AM
|
|
Updated:
|
Jun 25 2007 10:18PM
|
|
Credit:
|
David Vieira-Kurz is credited with the discovery of this vulnerability.
|
|
Vulnerable:
|
Simple Machines SMF 1.1.2
|
|
|
|
Not Vulnerable:
|
Simple Machines SMF 1.1.3
|
|

|