PunBB uses a predictable cookie_seed value that can be derived from the time of registration of the superadmin account (installation time), which might allow local users to perform unauthorized actions.
References
Configurations
Information
Published : 2006-11-06 10:07
Updated : 2018-10-17 14:44
NVD link : CVE-2006-5737
Mitre link : CVE-2006-5737
JSON object : View
CWE
Products Affected
punbb
- punbb