CVE-2008-6128
Published Feb 13, 2009
Last updated 7 years ago
Overview
- Description
- Session fixation vulnerability in moziloCMS 1.10.2 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 6.4
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-287
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mozilo:mozilocms:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1D5DDCB8-620E-44DC-B825-EF85976E2CA9", "versionEndIncluding": "1.10.2" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D5A28C98-5441-445B-A7CB-0C8F7138740D" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61F5FDDC-518A-453E-B1AC-95ECC3989BFA" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "94E2EBB2-FE02-484B-BEE5-8CE9BAD93887" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9495618C-29B8-4F10-B77B-C8D919AC4CEC" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42A75118-9B2B-45B4-B57C-6819B840B827" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61D1F62A-FC84-45DB-886A-1FFB1848EE97" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5D1EFC37-2184-4A84-81E0-3597294B54C8" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A2A82F17-9C66-4F40-96E8-B9576A365F59" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "07652C42-504F-4569-8A8A-0FAB9B4E5554" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "637F8421-B65C-493B-95E4-4E0E9CF7598F" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.6.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42695686-EC6D-4973-98F1-66426FBB3BBB" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6E9FF4E4-6411-436E-B2C2-B9D1DA264519" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "770D73A4-E544-4CC0-9601-B7B6ACB2C287" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "66047271-B38F-469B-8B91-4A0C16529C30" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3BA5E5D6-279A-408C-BCAE-F2EF73D46905" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FD6C096C-9388-4A46-8280-58B3F6C4495B" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1B5AD3FB-BC81-4DFE-9AF3-00263C558051" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9A6B5902-B199-4203-A385-16CDBBA63A29" }, { "criteria": "cpe:2.3:a:mozilo:mozilocms:1.10.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "362E7D45-EA25-47D8-A42C-E8CBA78C0D1B" } ], "operator": "OR" } ] } ]