CVE-2007-2555

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
09/05/2007
Last modified:
09/04/2025

Description

Unspecified vulnerability in Default.aspx in Podium CMS allows remote attackers to have an unknown impact, possibly session fixation, via a META HTTP-EQUIV Set-cookie expression in the id parameter, related to "cookie manipulation." NOTE: this issue might be cross-site scripting (XSS).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:podium_cms:podium_cms:*:*:*:*:*:*:*:*