Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38311
HistoryDec 01, 2022 - 5:51 a.m.

Session Fixation

2022-12-0105:51:34
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
session fixation
vulnerability
validation
unauthorized access
software

0.001 Low

EPSS

Percentile

30.1%

tribalsystems/zenario is vulnerable to session fixation. The vulnerability exists in welcome.ajax.php due to improper session validations, which allows an attacker to gain unauthorized access to an account.

0.001 Low

EPSS

Percentile

30.1%