Sry for double post, but after recognizing the technic used in
http://fiestafan.com/forums/showthread.php?t=6347, i started to investigate again. And I was WRONG: do to a stupid error, the hijacked session were not protocoled. The hack was NOT fixed! Im terrible sorry for writing something that was not true. But the weakness i demonstrated was not and is still not fixed!