Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2qh3-cw4r-2f2r

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Atomic Photo Album 1.1.0 pre4 does not properly handle the apa_cookie_login and apa_cookie_password cookies, which probably allows remote attackers to bypass authentication and gain administrative access via modified cookies.

Atomic Photo Album 1.1.0 pre4 does not properly handle the apa_cookie_login and apa_cookie_password cookies, which probably allows remote attackers to bypass authentication and gain administrative access via modified cookies.

EPSS

Процентиль: 84%
0.02259
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 17 лет назад

Atomic Photo Album 1.1.0 pre4 does not properly handle the apa_cookie_login and apa_cookie_password cookies, which probably allows remote attackers to bypass authentication and gain administrative access via modified cookies.

EPSS

Процентиль: 84%
0.02259
Низкий

Дефекты

CWE-287