admin/wr_admin.php in PHP-Ring Webring System (aka uPHP_ring_website) 0.9.1 allows remote attackers to bypass authentication and gain administrative access by setting the admin cookie to 1.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Php_ring_webring_system | Psychdaily | 0.9.1 (including) | 0.9.1 (including) |