Логотип exploitDog
bind:CVE-2010-1097
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2010-1097

Количество 2

Количество 2

nvd логотип

CVE-2010-1097

почти 16 лет назад

include/userlogin.class.php in DeDeCMS 5.5 GBK, when session.auto_start is enabled, allows remote attackers to bypass authentication and gain administrative access via a value of 1 for the _SESSION[dede_admin_id] parameter, as demonstrated by a request to uploads/include/dialog/select_soft_post.php.

CVSS2: 6.8
EPSS: Низкий
github логотип

GHSA-4xw8-vwjr-7vpq

почти 4 года назад

include/userlogin.class.php in DeDeCMS 5.5 GBK, when session.auto_start is enabled, allows remote attackers to bypass authentication and gain administrative access via a value of 1 for the _SESSION[dede_admin_id] parameter, as demonstrated by a request to uploads/include/dialog/select_soft_post.php.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2010-1097

include/userlogin.class.php in DeDeCMS 5.5 GBK, when session.auto_start is enabled, allows remote attackers to bypass authentication and gain administrative access via a value of 1 for the _SESSION[dede_admin_id] parameter, as demonstrated by a request to uploads/include/dialog/select_soft_post.php.

CVSS2: 6.8
0%
Низкий
почти 16 лет назад
github логотип
GHSA-4xw8-vwjr-7vpq

include/userlogin.class.php in DeDeCMS 5.5 GBK, when session.auto_start is enabled, allows remote attackers to bypass authentication and gain administrative access via a value of 1 for the _SESSION[dede_admin_id] parameter, as demonstrated by a request to uploads/include/dialog/select_soft_post.php.

0%
Низкий
почти 4 года назад

Уязвимостей на страницу