Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-5101
Description:Pentaho BI Server 1.7.0.1062 and earlier includes the session ID (JSESSIONID) in the URL, which allows attackers to obtain it from session history, referer headers, or sniffing of web traffic.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-5101
Bugtraq: 20091013 [AntiSnatchOr] Pentaho Bi-server multiple vulnerabilities (Google Search)
http://www.securityfocus.com/archive/1/507168/100/0/threaded
http://antisnatchor.com/2009/06/20/pentaho-1701062-multiple-vulnerabilities/




© 1998-2025 E-Soft Inc. All rights reserved.