11.07.2015 Views

SAP: Session (Fixation) Attacks and Protections - Black Hat

SAP: Session (Fixation) Attacks and Protections - Black Hat

SAP: Session (Fixation) Attacks and Protections - Black Hat

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

#1 Summary• <strong>Session</strong> fixation in Joomla!, a widely usedopen-source CMS• Affected versions: 1.5.x – 1.5.15• Vulnerability ID: 20100423 (TAD-2010-001)• Notified: November 2009• Release date: April 2010First “sessationfixation” vuln http://developer.joomla.org/security/news/309-20100423-core-sessation-fixation.htmlCopyright © 2011 Taddong S.L. www.taddong.com28

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!