Логотип exploitDog
bind:CVE-2007-4338
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2007-4338

Количество 2

Количество 2

nvd логотип

CVE-2007-4338

больше 18 лет назад

index.php in Ryan Haudenschilt Family Connections (FCMS) before 0.9 allows remote attackers to access an arbitrary account by placing the account's name in the value of an fcms_login_id cookie. NOTE: this can be leveraged for code execution via a POST with PHP code in the content parameter.

CVSS2: 10
EPSS: Средний
github логотип

GHSA-x2f3-hqgw-x6gp

почти 4 года назад

index.php in Ryan Haudenschilt Family Connections (FCMS) before 0.9 allows remote attackers to access an arbitrary account by placing the account's name in the value of an fcms_login_id cookie. NOTE: this can be leveraged for code execution via a POST with PHP code in the content parameter.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2007-4338

index.php in Ryan Haudenschilt Family Connections (FCMS) before 0.9 allows remote attackers to access an arbitrary account by placing the account's name in the value of an fcms_login_id cookie. NOTE: this can be leveraged for code execution via a POST with PHP code in the content parameter.

CVSS2: 10
28%
Средний
больше 18 лет назад
github логотип
GHSA-x2f3-hqgw-x6gp

index.php in Ryan Haudenschilt Family Connections (FCMS) before 0.9 allows remote attackers to access an arbitrary account by placing the account's name in the value of an fcms_login_id cookie. NOTE: this can be leveraged for code execution via a POST with PHP code in the content parameter.

28%
Средний
почти 4 года назад

Уязвимостей на страницу