High
CVSS 7.5
Overview
Geeklog 1.3 allows remote attackers to hijack user accounts, including the administrator account, by modifying the UID of a user's permanent cookie to the target account.
Geeklog 1.3 allows remote attackers to hijack user accounts, including the admin...
Geeklog 1.3 allows remote attackers to hijack user accounts, including the administrator account, by modifying the UID of a user's permanent cookie to the target account.
This vulnerability is rated 🟠 HIGH.
Recommended actions: