TROYANOSYVIRUS
Volver a CVEs

CVE-2006-0844

N/A

Descripcion

Leif M. Wright's Blog 3.5 does not make a password comparison when authenticating an administrator via a cookie, which allows remote attackers to bypass login authentication, probably by setting the blogAdmin cookie.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado2/22/2006
Ultima modificacion4/16/2026
Fuentenvd
Avistamientos honeypot0

Productos afectados

leif_m._wright:web_blog

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.