Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-2642

Опубликовано: 28 июл. 2009
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

index.php in Desi Short URL Script 1.0 allows remote attackers to bypass authentication by setting the logged cookie to 1 and the uid cookie to an integer value, as demonstrated by a value of 13.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:desiscripts:desi_short_url_script:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 83%
0.02421
Низкий

7.5 High

CVSS2

Дефекты

CWE-287

Связанные уязвимости

github
больше 4 лет назад

index.php in Desi Short URL Script 1.0 allows remote attackers to bypass authentication by setting the logged cookie to 1 and the uid cookie to an integer value, as demonstrated by a value of 13.

EPSS

Процентиль: 83%
0.02421
Низкий

7.5 High

CVSS2

Дефекты

CWE-287