Session fixation vulnerability in Shared Sign-On 5.x and 6.x, a module for Drupal, allows remote attackers to hijack web sessions via unspecified vectors.Referenceshttp://www.securityfocus.com/bid/36563https://exchange.xforce.ibmcloud.com/vulnerabilities/53560http://drupal.org/node/592488