Looking for the vulnerability index of Invicti's legacy products?
GibbonEdu Session Fixation Vulnerability (CVE-2022-27305) - Vulnerability Database

GibbonEdu Session Fixation Vulnerability (CVE-2022-27305)

Description

Gibbon v23 does not generate a new session ID cookie after a user authenticates, making the application vulnerable to session fixation.

References

Related Vulnerabilities