Description
Session fixation vulnerability in lib/user/sfBasicSecurityUser.class.php in SensioLabs Symfony before 1.4.18 allows remote attackers to hijack web sessions via vectors related to the regenerate method and unspecified "database backed session classes."
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2012-2650 | Session fixation vulnerability in lib/user/sfBasicSecurityUser.class.php in SensioLabs Symfony before 1.4.18 allows remote attackers to hijack web sessions via vectors related to the regenerate method and unspecified "database backed session classes." |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T19:42:32.208Z
Reserved: 2012-05-14T00:00:00.000Z
Link: CVE-2012-2667
No data.
Status : Deferred
Published: 2012-06-07T19:55:09.353
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-2667
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD