Session fixation vulnerability in Rails before 1.2.4, as used for Ruby on Rails, allows remote attackers to hijack web sessions via unspecified vectors related to "URL-based sessions."
References
Configurations
Information
Published : 2007-10-19 16:17
Updated : 2011-03-07 19:00
NVD link : CVE-2007-5380
Mitre link : CVE-2007-5380
JSON object : View
CWE
Products Affected
david_hansson
- ruby_on_rails