Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A Session Fixation issue exists in CodeIgniter before 3.1.9 because session.use_strict_mode in the Session Library was mishandled.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EllisLab CodeIgniter 安全漏洞
Vulnerability Description
EllisLab CodeIgniter是美国EllisLab公司的一套针对于PHP网站开发者使用的应用程序开发框架和工具包。 EllisLab CodeIgniter 3.1.9之前版本中存在会话固定漏洞,该漏洞源于程序没有正确的处理Session Library中的session.use_strict_mode。远程攻击者可通过诱使用户打开特制的网站利用该漏洞获取其他用户会话的访问权限。
CVSS Information
N/A
Vulnerability Type
N/A