Session fixation vulnerability in pfSense before 2.1.4 allows remote attackers to hijack web sessions via a firewall login cookie. Per: http://cwe.mitre.org/data/definitions/384.html
"CWE-384: Session Fixation"
Publication date: Wed, 02 Jul 2014 15:35:00 +0000