OpenSolution Quick.Cart
cpe:2.3:a:opensolution:quick_cart:*:*:*:*:*:*:*
- 6.7
A session fixation vulnerability has been identified in OpenSolution Quick.Cart version 6.7. This issue allows an attacker to set a user's session identifier before authentication, with the session ID remaining unchanged after authentication. As a result, an attacker can hijack an authenticated session by fixing the session ID for a victim.
Exploitation of this vulnerability allows for session hijacking, where an attacker can take over an authenticated user's session.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.