CVE-2006-0411

claro_init_local.inc.php in Claroline 1.7.2 uses guessable session cookies (MD5 hash of connection time), which allows remote attackers to hijack sessions and possibly gain administrative privileges.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:claroline:claroline:1.7.2:*:*:*:*:*:*:*

Information

Published : 2006-01-25 03:03

Updated : 2017-07-19 18:29


NVD link : CVE-2006-0411

Mitre link : CVE-2006-0411


JSON object : View

Advertisement

dedicated server usa

Products Affected

claroline

  • claroline