admin/Index.php in Acc Real Estate 4.0 allows remote attackers to bypass authentication and gain administrative access by setting the username_cookie to "admin."
References
Configurations
History
No history.
Information
Published : 2009-02-26 16:17
Updated : 2017-09-29 01:33
NVD link : CVE-2008-6293
Mitre link : CVE-2008-6293
CVE.ORG link : CVE-2008-6293
JSON object : View
Products Affected
accscripts
- acc_real_estate
CWE
CWE-264
Permissions, Privileges, and Access Controls