Secunia Logo
 
CVE Reference: CVE-2007-2719
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-2719

Description:
Session fixation vulnerability in HP Systems Insight Manager (SIM) 4.2 and 5.0 SP4 and SP5 allows remote attackers to hijack web sessions by setting the JSESSIONID cookie.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/34303

ST
  1018062

SAID
  Secunia Advisory: SA25275

MISC
  http://www.acrossecurity.com/aspr/ASPR-2007-05-14-1-PUB.txt

HP
  http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&cc=us&objectID=c01049713

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/468974/100/0/threaded

BID
  23988


Return to the previous page.