Symfony CVE-2015-8124 Session Fixation Vulnerability

Bugtraq ID: 77694
Class: Design Error
CVE: CVE-2015-8124
Remote: Yes
Local: No
Published: Nov 23 2015 12:00AM
Updated: Dec 08 2015 10:16PM
Credit: RedTeam Pentesting GmbH
Vulnerable: SensioLabs Symfony 2.7.6
SensioLabs Symfony 2.7.5
SensioLabs Symfony 2.7.4
SensioLabs Symfony 2.7.3
SensioLabs Symfony 2.7.2
SensioLabs Symfony 2.7.1
SensioLabs Symfony 2.7
SensioLabs Symfony 2.6.11
SensioLabs Symfony 2.6.10
SensioLabs Symfony 2.6.9
SensioLabs Symfony 2.6.8
SensioLabs Symfony 2.6.7
SensioLabs Symfony 2.6.6
SensioLabs Symfony 2.6.5
SensioLabs Symfony 2.6.4
SensioLabs Symfony 2.6.3
SensioLabs Symfony 2.6.2
SensioLabs Symfony 2.6.1
SensioLabs Symfony 2.6
SensioLabs Symfony 2.3.34
SensioLabs Symfony 2.3.33
SensioLabs Symfony 2.3.32
SensioLabs Symfony 2.3.31
SensioLabs Symfony 2.3.30
SensioLabs Symfony 2.3.29
SensioLabs Symfony 2.3.28
SensioLabs Symfony 2.3.27
SensioLabs Symfony 2.3.26
SensioLabs Symfony 2.3.25
SensioLabs Symfony 2.3.24
SensioLabs Symfony 2.3.23
SensioLabs Symfony 2.3.22
SensioLabs Symfony 2.3.21
SensioLabs Symfony 2.3.20
SensioLabs Symfony 2.3.19
SensioLabs Symfony 2.3.18
SensioLabs Symfony 2.3.17
SensioLabs Symfony 2.3.16
SensioLabs Symfony 2.3.15
SensioLabs Symfony 2.3.14
SensioLabs Symfony 2.3.13
SensioLabs Symfony 2.3.12
SensioLabs Symfony 2.3.11
SensioLabs Symfony 2.3.10
SensioLabs Symfony 2.3.9
SensioLabs Symfony 2.3.8
SensioLabs Symfony 2.3.7
SensioLabs Symfony 2.3.6
SensioLabs Symfony 2.3.5
SensioLabs Symfony 2.3.4
SensioLabs Symfony 2.3.3
SensioLabs Symfony 2.3.2
SensioLabs Symfony 2.3.1
SensioLabs Symfony 2.3
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Not Vulnerable: SensioLabs Symfony 2.7.7
SensioLabs Symfony 2.6.12
SensioLabs Symfony 2.3.35


 

Privacy Statement
Copyright 2010, SecurityFocus