Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Markus Petrux

#48631of 53,638
5.1Total CVSS
Vulnerabilities · 1
PT-2006-2244
5.1
2006-03-14
Drupal · Drupal · CVE-2006-1228
**Name of the Vulnerable Software and Affected Versions** Drupal versions 4.5.x through 4.5.7 Drupal versions 4.6.x through 4.6.7 **Description** A session fixation issue allows remote attackers to gain privileges by tricking a user into clicking on a URL that fixes the session identifier. **Recommendations** For versions 4.5.x through 4.5.7, update to version 4.5.8 or later. For versions 4.6.x through 4.6.7, update to version 4.6.8 or later.