CVE-2004-2182

Severity
7.5HIGH
EPSS
1.8%
top 17.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 31
Latest updateApr 29

Description

Session fixation vulnerability in Macromedia JRun 4.0 allows remote attackers to hijack user sessions by pre-setting the user session ID information used by the session server.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

NVDmacromedia/jrun4.0, 4.0_build_61650+1

🔴Vulnerability Details

2
GHSA
GHSA-gr3m-3w4f-5p6g: Session fixation vulnerability in Macromedia JRun 42022-04-29
CVEList
CVE-2004-2182: Session fixation vulnerability in Macromedia JRun 42005-07-10
CVE-2004-2182 (HIGH CVSS 7.5) | Session fixation vulnerability in M | cvebase.io