CVE-2007-5380
Publication date 19 October 2007
Last updated 24 July 2024
Ubuntu priority
Description
Session fixation vulnerability in Rails before 1.2.4, as used for Ruby on Rails, allows remote attackers to hijack web sessions via unspecified vectors related to "URL-based sessions."