Free Hosting Manager 1.2 and 2.0 allows remote attackers to bypass authentication and gain administrative access by setting both the adminuser and loggedin cookies.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Free_hosting_manager | Fhm-script | 1.2 (including) | 1.2 (including) |
Free_hosting_manager | Fhm-script | 2.0 (including) | 2.0 (including) |