CVE-2007-5380

Publication date

2007-10-19 23:00:00

Family

mitre

State

PUBLISHED

Description

Session fixation vulnerability in Rails before 1.2.4, as used for Ruby on Rails, allows remote attackers to hijack web sessions via unspecified vectors related to "URL-based sessions."