Session fixation vulnerability in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allows remote attackers to hijack web sessions via a crafted session cookie.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/55618 | vdb entry |
http://rhn.redhat.com/errata/RHSA-2012-1278.html | vendor advisory |
http://rhn.redhat.com/errata/RHSA-2012-1281.html | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/78776 | vdb entry |
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=832151 | |
http://secunia.com/advisories/50660 | third party advisory |