TROYANOSYVIRUS
Back to CVEs

CVE-2006-0411

N/A

Description

claro_init_local.inc.php in Claroline 1.7.2 uses guessable session cookies (MD5 hash of connection time), which allows remote attackers to hijack sessions and possibly gain administrative privileges.

CVE Details

CVSS v3.1 ScoreN/A
Published1/25/2006
Last Modified4/16/2026
Sourcenvd
Honeypot Sightings0

Affected Products

claroline:claroline

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.