Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v455-6vj4-3hr7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

aflog 1.01 allows remote attackers to bypass authentication and gain administrative access by setting the aflog_auth_a cookie to "A" or "O" in (1) edit_delete.php, (2) edit_cat.php, (3) edit_lock.php, and (4) edit_form.php.

aflog 1.01 allows remote attackers to bypass authentication and gain administrative access by setting the aflog_auth_a cookie to "A" or "O" in (1) edit_delete.php, (2) edit_cat.php, (3) edit_lock.php, and (4) edit_form.php.

EPSS

Процентиль: 84%
0.02259
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 17 лет назад

aflog 1.01 allows remote attackers to bypass authentication and gain administrative access by setting the aflog_auth_a cookie to "A" or "O" in (1) edit_delete.php, (2) edit_cat.php, (3) edit_lock.php, and (4) edit_form.php.

EPSS

Процентиль: 84%
0.02259
Низкий

Дефекты

CWE-287