Session fixation vulnerability in Rails before 1.2.4, as used for Ruby on Rails, allows remote attackers to hijack web sessions via unspecified vectors related to "URL-based sessions."
References
Configurations
History
No history.
Information
Published : 2007-10-19 23:17
Updated : 2024-02-28 11:01
NVD link : CVE-2007-5380
Mitre link : CVE-2007-5380
CVE.ORG link : CVE-2007-5380
JSON object : View
Products Affected
david_hansson
- ruby_on_rails
CWE