Session fixation vulnerability in Simple Machines Forum (SMF) 1.1.2 and previous versions allows remote malicious users to hijack web sessions by setting the PHPSESSID parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
simple machines simple machines forum |