Unspecified vulnerability in ss.php in AL-Caricatier 2.5 and earlier allows remote attackers to bypass login authentication by requesting view_caricatier.php, and then requesting any file in the admin directory with a cookie_username=admin argument.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Al-caricatier | Al-caricatier | 1.0 (including) | 1.0 (including) |
Al-caricatier | Al-caricatier | 2.5 (including) | 2.5 (including) |