A+ PHP Scripts News Management System (NMS) allows remote attackers to bypass authentication and gain administrator privileges by setting the mobsuser and mobspass cookies to 1.
References
Configurations
History
21 Nov 2024, 00:57
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/29977 - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/43431 - | |
References | () https://www.exploit-db.com/exploits/5954 - |
Information
Published : 2009-04-08 10:30
Updated : 2024-11-21 00:57
NVD link : CVE-2008-6667
Mitre link : CVE-2008-6667
CVE.ORG link : CVE-2008-6667
JSON object : View
Products Affected
marc_melvin
- a\+_php_scripts_news_management_system
CWE
CWE-287
Improper Authentication