Improper session invalidation in the component /bbdms/change-password.php of PHPGurukul Blood Bank & Donor Management System v2.4 allows attackers to execute a session hijacking attack.
| Software | From | Fixed in |
|---|---|---|
| phpgurukul / blood_bank_&_donor_management_system | 2.4 | 2.4.x |