TROYANOSYVIRUS
Voltar para CVEs

CVE-2006-0844

N/A

Descricao

Leif M. Wright's Blog 3.5 does not make a password comparison when authenticating an administrator via a cookie, which allows remote attackers to bypass login authentication, probably by setting the blogAdmin cookie.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado2/22/2006
Ultima modificacao4/16/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

leif_m._wright:web_blog

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.