OpenID allows remote attackers to forcibly log a user into an OpenID enabled site, divulge the user's personal information to this site, and add it site to the trusted sites list via a crafted web page, related to cached tokens.
                
            References
                    Configurations
                    History
                    No history.
Information
                Published : 2007-03-24 00:19
Updated : 2008-11-13 06:35
NVD link : CVE-2007-1652
Mitre link : CVE-2007-1652
CVE.ORG link : CVE-2007-1652
JSON object : View
Products Affected
                openid
- openid
 
CWE
                