654 B
654 B
CVE-2010-2795
Description
phpCAS before 1.1.2 allows remote authenticated users to hijack sessions via a query string containing a crafted ticket value.
POC
Reference
Github
No PoCs found on GitHub currently.