Geeklog 1.3 allows remote attackers to hijack user accounts, including the administrator account, by modifying the UID of a users permanent cookie to the target account.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Geeklog | Geeklog | 1.3 (including) | 1.3 (including) |