CVE-2002-0097

Geeklog 1.3 allows remote attackers to hijack user accounts, including the administrator account, by modifying the UID of a user's permanent cookie to the target account.
Configurations

Configuration 1 (hide)

cpe:2.3:a:geeklog:geeklog:1.3:*:*:*:*:*:*:*

History

20 Nov 2024, 23:38

Type Values Removed Values Added
References () http://geeklog.sourceforge.net/index.php?topic=Security - () http://geeklog.sourceforge.net/index.php?topic=Security -
References () http://online.securityfocus.com/archive/1/249443 - Vendor Advisory () http://online.securityfocus.com/archive/1/249443 - Vendor Advisory
References () http://www.iss.net/security_center/static/7869.php - Patch, Vendor Advisory () http://www.iss.net/security_center/static/7869.php - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/3844 - () http://www.securityfocus.com/bid/3844 -

Information

Published : 2002-03-25 05:00

Updated : 2024-11-20 23:38


NVD link : CVE-2002-0097

Mitre link : CVE-2002-0097

CVE.ORG link : CVE-2002-0097


JSON object : View

Products Affected

geeklog

  • geeklog