Hosts vulnerable to CVE-2007-3799

CVE-2007-3799 — severity medium, CVSS 4.3 — 1 affected host indexed by QROS Explore.

About CVE-2007-3799

The session_start function in ext/session in PHP 4.x up to 4.4.7 and 5.x up to 5.2.3 allows remote attackers to insert arbitrary attributes into the session cookie via special characters in a cookie that is obtained from (1) PATH_INFO, (2) the session_id function, and (3) the session_start function,

Showing 1 of 1 host, ranked by risk score.

Search all CVE-2007-3799 hosts in Explore

Open in Explore →