Description
Joomla! Core is prone to a session fixation vulnerability. An attacker may leverage this issue to hijack an arbitrary session and gain access to sensitive information, which may help in launching further attacks. Joomla! Core versions 1.0.x ranging from 1.0.0 and up to and including 1.0.12 are vulnerable.
Remediation
Update to Joomla! Core version 1.0.13 or latest
References
http://www.securityfocus.com/archive/1/archive/1/476017/100/0/threaded
https://www.joomla.org/announcements/release-news/3677-joomla-1013-released.html
Related Vulnerabilities
Drupal Core 9.3.x Remote Code Execution (9.3.0 - 9.3.18)
WordPress Plugin WooCommerce Product Feed Manager Security Bypass (2.2.3)
Unfiltered header injection in Apache 1.3.34/2.0.57/2.2.1
WordPress Plugin Find My Blocks Information Disclosure (3.3.2)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2019-17571)