Session Hijacking Vulnerability in baserCMS 1.6.15 and earlier

Session Hijacking Vulnerability in baserCMS 1.6.15 and earlier

CVE-2012-1248 · MEDIUM Severity

AV:N/AC:H/AU:N/C:P/I:P/A:P

app/config/core.php in baserCMS 1.6.15 and earlier does not properly handle installations in shared-hosting environments, which allows remote attackers to hijack sessions by leveraging administrative access to a different domain.

Learn more about our Cms Pen Testing.