admin/Index.php in Acc Real Estate 4.0 allows remote attackers to bypass authentication and gain administrative access by setting the username_cookie to "admin."
References
Configurations
Information
Published : 2009-02-26 08:17
Updated : 2017-09-28 18:33
NVD link : CVE-2008-6293
Mitre link : CVE-2008-6293
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
accscripts
- acc_real_estate