CVE-2008-6128

MoziloCMS <1.10.2 - Info Disclosure

Title source: llm

Description

Session fixation vulnerability in moziloCMS 1.10.2 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.

Scores

EPSS 0.0054
EPSS Percentile 67.1%

Classification

CWE
CWE-287
Status draft

Affected Products (20)

mozilo/mozilocms < 1.10.2
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
mozilo/mozilocms
... and 5 more

Timeline

Published Feb 13, 2009
Tracked Since Feb 18, 2026