CVE-2014-0090
08.05.2014, 14:29
Session fixation vulnerability in Foreman before 1.4.2 allows remote attackers to hijack web sessions via the session id cookie.Enginsight
Vendor | Product | Version |
---|---|---|
theforeman | foreman | 𝑥 ≤ 1.4.1 |
theforeman | foreman | 1.0 |
theforeman | foreman | 1.1 |
theforeman | foreman | 1.2.0 |
theforeman | foreman | 1.2.0:rc1 |
theforeman | foreman | 1.2.0:rc2 |
theforeman | foreman | 1.2.1 |
theforeman | foreman | 1.2.2 |
theforeman | foreman | 1.2.3 |
theforeman | foreman | 1.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration