Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-6013

Опубликовано: 19 нояб. 2007
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.8
CVSS3: 9.8

Описание

Wordpress 1.5 through 2.3.1 uses cookie values based on the MD5 hash of a password MD5 hash, which allows attackers to bypass authentication by obtaining the MD5 hash from the user database, then generating the authentication cookie from that hash.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

edgy

ignored

end of life, was needs-triage
feisty

ignored

end of life, was needs-triage
gutsy

ignored

end of life, was needs-triage
hardy

ignored

end of life
intrepid

not-affected

jaunty

not-affected

karmic

not-affected

lucid

not-affected

Показывать по

Ссылки на источники

EPSS

Процентиль: 78%
0.01174
Низкий

6.8 Medium

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

redhat
больше 17 лет назад

Wordpress 1.5 through 2.3.1 uses cookie values based on the MD5 hash of a password MD5 hash, which allows attackers to bypass authentication by obtaining the MD5 hash from the user database, then generating the authentication cookie from that hash.

CVSS3: 9.8
nvd
больше 17 лет назад

Wordpress 1.5 through 2.3.1 uses cookie values based on the MD5 hash of a password MD5 hash, which allows attackers to bypass authentication by obtaining the MD5 hash from the user database, then generating the authentication cookie from that hash.

CVSS3: 9.8
debian
больше 17 лет назад

Wordpress 1.5 through 2.3.1 uses cookie values based on the MD5 hash o ...

CVSS3: 9.8
github
больше 3 лет назад

Wordpress 1.5 through 2.3.1 uses cookie values based on the MD5 hash of a password MD5 hash, which allows attackers to bypass authentication by obtaining the MD5 hash from the user database, then generating the authentication cookie from that hash.

EPSS

Процентиль: 78%
0.01174
Низкий

6.8 Medium

CVSS2

9.8 Critical

CVSS3