CVE-2026-2177: SourceCodester Prison Management System Login session fixiation
A vulnerability has been found in SourceCodester Prison Management System 1.0. The impacted element is an unknown function of the component Login. The manipulation leads to session fixiation. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2177?
CVE-2026-2177 has a high severity due to the potential for session fixation attacks.
How do I fix CVE-2026-2177?
To fix CVE-2026-2177, you should implement proper session management and regenerate session IDs upon user authentication.
What impact does CVE-2026-2177 have on users?
CVE-2026-2177 can allow attackers to hijack user accounts by fixing session IDs.
Is CVE-2026-2177 exploitable remotely?
Yes, CVE-2026-2177 is exploitable remotely due to the nature of the session fixation vulnerability.
Which version of SourceCodester Prison Management System is affected by CVE-2026-2177?
CVE-2026-2177 affects SourceCodester Prison Management System version 1.0.