Vulnerability Information
Vulnerability Scanning
Community
Blog
-
new entry!
Corporate Information
Online Shop
Customer Login
Secunia Advisories
Secunia Research
Binary Analysis
Home
>
Vulnerability Information
>
Secunia Advisories
> CVE-2009-0108
Secunia Advisories
Advisories
Search
Advisories by Product
Advisories by Vendor
Historic Advisories
Mailing Lists
Report Vulnerability
Contact Form
Business Solutions
Partner Solutions
About
CVE Reference: CVE-2009-0108
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by
CVE MITRE
.
Original Page at CVE MITRE:
CVE-2009-0108
Description:
PHPAuctions (aka PHPAuctionSystem) allows remote attackers to bypass authentication and gain administrative access via modified (1) PHPAUCTION_RM_ID, (2) PHPAUCTION_RM_NAME, (3) PHPAUCTION_RM_USERNAME, and (4) PHPAUCTION_RM_EMAIL cookies.
CVE Status:
Candidate
References:
SREASON
http://securityreason.com/securityalert/4891
SAID
Secunia Advisory: SA33331
OSVDB
51146
MILW0RM
http://www.milw0rm.com/exploits/7674
BID
33120
Return to the
previous page
.
Contact
|
Terms & Conditions and Copyright
|
Report Vulnerability
|
Press
|
Jobs
(
open positions
) |
About Secunia
Copyright Secunia 2002-2009