Ruby on Rails Session Fixation Vulnerability

Bugtraq ID: 26598
Class: Design Error
CVE: CVE-2007-6077
Remote: Yes
Local: No
Published: Nov 01 2007 12:00AM
Updated: Dec 21 2009 08:43AM
Credit: sameer discovered this vulnerability. <br>
Vulnerable: Ruby on Rails Ruby on Rails 1.2.5
Gentoo Linux
Apple Mac OS X Server 10.5.1
Apple Mac OS X 10.5.1
Not Vulnerable: Ruby on Rails Ruby on Rails 1.2.6


 

Privacy Statement
Copyright 2010, SecurityFocus