CVE

Id
8136  
CVE No.
CVE-2003-1312  
Status
Candidate  
Description
siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder places a session ID string in the value of the SMSESSION parameter in a URL, which might allow remote attackers to obtain the ID by sniffing, reading Referer logs, or other methods.  
Phase
Assigned (20061215)  
Votes
None (candidate not yet proposed)  
Comments