Description
Joomla! Core is prone to a session fixation vulnerability. An attacker may leverage this issue to hijack an arbitrary session and gain access to sensitive information, which may help in launching further attacks. Joomla! Core versions 1.0.x ranging from 1.0.0 and up to and including 1.0.12 are vulnerable.
Remediation
Update to Joomla! Core version 1.0.13 or latest
References
http://www.securityfocus.com/archive/1/archive/1/476017/100/0/threaded
https://www.joomla.org/announcements/release-news/3677-joomla-1013-released.html
Related Vulnerabilities
WordPress Plugin Titan Anti-spam & Security Cross-Site Scripting (4.1)
WordPress Plugin Titan Framework Cross-Site Scripting (1.12.1)
WordPress Plugin Aoi Tori Cross-Site Scripting (1.1)
IBM WebSEAL Session Fixation Vulnerability (CVE-2019-4152)
Artifactory Incorrect Authorization Vulnerability (CVE-2021-45074)