Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-1393

Опубликовано: 20 мар. 2008
Источник: debian

Описание

Plone CMS 3.0.5, and probably other 3.x versions, places a base64 encoded form of the username and password in the __ac cookie for the admin account, which makes it easier for remote attackers to obtain administrative privileges by sniffing the network.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
plone3removedpackage
plone3no-dsalennypackage

Связанные уязвимости

ubuntu
почти 18 лет назад

Plone CMS 3.0.5, and probably other 3.x versions, places a base64 encoded form of the username and password in the __ac cookie for the admin account, which makes it easier for remote attackers to obtain administrative privileges by sniffing the network.

nvd
почти 18 лет назад

Plone CMS 3.0.5, and probably other 3.x versions, places a base64 encoded form of the username and password in the __ac cookie for the admin account, which makes it easier for remote attackers to obtain administrative privileges by sniffing the network.

github
почти 4 года назад

Plone Improper Session Management