TROYANOSYVIRUS
Back to CVEs

CVE-2006-0844

N/A

Description

Leif M. Wright's Blog 3.5 does not make a password comparison when authenticating an administrator via a cookie, which allows remote attackers to bypass login authentication, probably by setting the blogAdmin cookie.

CVE Details

CVSS v3.1 ScoreN/A
Published2/22/2006
Last Modified4/16/2026
Sourcenvd
Honeypot Sightings0

Affected Products

leif_m._wright:web_blog

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.