isadmin.php in PhpWebGallery 1.0 allows remote attackers to gain administrative access via by setting the photo_login cookie to pseudo.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/4622 | vdb entry patch |
http://seclists.org/lists/vuln-dev/2002/Apr/0270.html | mailing list |
http://www.ifrance.com/kitetoua/tuto/PWG.txt | vendor advisory |