CVE-2008-5873
08.01.2009, 18:30
Yerba SACphp 6.3 and earlier allows remote attackers to bypass authentication and gain administrative access via a galleta[sesion] cookie that has a value beginning with 1:1: followed by a username.Enginsight
| Vendor | Product | Version |
|---|---|---|
| yerba | yerba | 𝑥 ≤ 6.3 |
| yerba | yerba | 6.28 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References