Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-63q6-wgcf-8ppf

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

login.php in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allows remote attackers to bypass authentication and obtain administrative access via special characters in the Username parameter, as demonstrated by an admin'# parameter value.

login.php in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allows remote attackers to bypass authentication and obtain administrative access via special characters in the Username parameter, as demonstrated by an admin'# parameter value.

EPSS

Процентиль: 85%
0.02602
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
почти 17 лет назад

login.php in CelerBB 0.0.2, when magic_quotes_gpc is disabled, allows remote attackers to bypass authentication and obtain administrative access via special characters in the Username parameter, as demonstrated by an admin'# parameter value.

EPSS

Процентиль: 85%
0.02602
Низкий

Дефекты

CWE-287