CVE-2007-3597

Session fixation vulnerability in Zen Cart 1.3.7 and earlier allows remote attackers to hijack web sessions by setting the Cookie parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:zen_cart:zen_cart:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-07-06 18:30

Updated : 2024-02-28 11:01


NVD link : CVE-2007-3597

Mitre link : CVE-2007-3597

CVE.ORG link : CVE-2007-3597


JSON object : View

Products Affected

zen_cart

  • zen_cart
CWE
CWE-287

Improper Authentication