CVE-2014-0090
EUVD-2014-017508.05.2014, 14:29
Session fixation vulnerability in Foreman before 1.4.2 allows remote attackers to hijack web sessions via the session id cookie.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| theforeman | foreman | 𝑥 ≤ 1.4.1 |
| theforeman | foreman | 1.0 |
| theforeman | foreman | 1.1 |
| theforeman | foreman | 1.2.0 |
| theforeman | foreman | 1.2.0:rc1 |
| theforeman | foreman | 1.2.0:rc2 |
| theforeman | foreman | 1.2.1 |
| theforeman | foreman | 1.2.2 |
| theforeman | foreman | 1.2.3 |
| theforeman | foreman | 1.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration