CVE-2007-1951

Onelook Oboshop - Authentication Bypass

Title source: rule

Description

Session fixation vulnerability in onelook obo Shop allows remote attackers to hijack web sessions by setting a PHPSESSID cookie.

Scores

EPSS 0.0075
EPSS Percentile 72.9%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

onelook/oboshop

Timeline

Published Apr 11, 2007
Tracked Since Feb 18, 2026