CVE-2008-5840
05.01.2009, 16:30
PHP iCalendar 2.24 and earlier allows remote attackers to bypass authentication by setting the phpicalendar and phpicalendar_login cookies to 1.Enginsight
| Vendor | Product | Version |
|---|---|---|
| phpicalendar | phpicalendar | 𝑥 ≤ 2.24 |
| phpicalendar | phpicalendar | 0.7 |
| phpicalendar | phpicalendar | 0.8 |
| phpicalendar | phpicalendar | 0.9 |
| phpicalendar | phpicalendar | 0.9.5 |
| phpicalendar | phpicalendar | 1.0 |
| phpicalendar | phpicalendar | 1.1 |
| phpicalendar | phpicalendar | 2.0:beta |
| phpicalendar | phpicalendar | 2.0.1 |
| phpicalendar | phpicalendar | 2.0c:c |
| phpicalendar | phpicalendar | 2.1 |
| phpicalendar | phpicalendar | 2.2 |
| phpicalendar | phpicalendar | 2.21 |
| phpicalendar | phpicalendar | 2.22 |
| phpicalendar | phpicalendar | 2.23 |
| phpicalendar | phpicalendar | 2.23:rc1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References