Description
A flaw was found in WildFly Elytron. A variation to the use of a session fixation exploit when using Undertow was found despite Undertow switching the session ID after authentication.
Remediation
References
Related Vulnerabilities
ownCloud Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-1850)
Opencart Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2010-1610)
WordPress Plugin Flip Book 'php.php' Arbitrary File Upload (1.0)
PHP Out-of-bounds Write Vulnerability (CVE-2016-5399)
Ruby on Rails Improper Input Validation Vulnerability (CVE-2010-3933)