CVE-2008-4689

Publication date

2008-10-22 17:00:00

Family

mitre

State

PUBLISHED

Description

Mantis before 1.1.3 does not unset the session cookie during logout, which makes it easier for remote attackers to hijack sessions.