cookiedecode function in PHP-Nuke 4.4 allows users to bypass authentication and gain access to other user accounts by extracting the authentication information from a cookie.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/6183 | vdb entry |
http://archives.neohapsis.com/archives/bugtraq/2001-02/0257.html | mailing list exploit patch vendor advisory |