Description
Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.
Remediation
References
Related Vulnerabilities
IBMHttpServer CVE-2012-5955 Vulnerability (CVE-2012-5955)
Moodle Incorrect Default Permissions Vulnerability (CVE-2024-43430)
Squid Out-of-bounds Read Vulnerability (CVE-2021-28116)
WebLogic CVE-2018-15756 Vulnerability (CVE-2018-15756)
Oracle Database Server CVE-2015-0483 Vulnerability (CVE-2015-0483)