Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue exists in PHP-Fusion 9.03.50 where session cookies are not deleted once a user logs out, allowing for an attacker to perform a session replay attack and impersonate the victim user.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP-Fusion 安全漏洞
Vulnerability Description
Php-fusion PHP-Fusion是马来西亚PHP-Fusion(Php-fusion)公司的一套基于MySql和PHP的开源轻量级内容管理系统。该系统包含新闻、文章和论坛等模块。 PHP-Fusion 9.03.50存在安全漏洞,该漏洞源于当用户注销后,其会话cookie不会被删除。攻击者可利用该漏洞执行会话重放攻击并冒充受害用户。
CVSS Information
N/A
Vulnerability Type
N/A