CVE Vulnerabilities

CVE-2008-6296

Published: Feb 26, 2009 | Modified: Sep 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

admin.php in Maran PHP Shop allows remote attackers to bypass authentication and gain administrative access by setting the user cookie to demo.

Affected Software

Name Vendor Start Version End Version
Php_shop Maran * *

References