phpx324.txt...

- AV AC AU C I A
发布: 2004-03-17
修订: 2025-04-13

PHPX versions 2.x through 3.2.4 fail to create a secure session management engine. A user can obtain a session by simply supplying a uid of the user in which they want to obtain the account from, and as long as their session is in the database, it will allow session hi-jacking to occur. Further-more it is concerning that the session id itself is generated by a simple auto increment field in the MySQL database, making it trivial for an attacker to steal a cookie. Full exploitation included.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息