CVE Vulnerabilities

CVE-2006-3837

Published: Jul 25, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

delcookie.php in Professional Home Page Tools Guestbook changes the expiration date of a cookie instead of deleting the cookies value, which makes it easier for attackers to steal the cookie and obtain the administrators password hash after logout.

Affected Software

NameVendorStart VersionEnd Version
Professional_home_page_tools_guestbookProfessional_home_page_tools**

References