Unspecified vulnerability in admin.pl in SQL-Ledger before 2.6.26 and LedgerSMB before 1.1.9 allows remote attackers to bypass authentication via unknown vectors that prevents a password check from occurring.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/462375/100/0/threaded | mailing list |
http://secunia.com/advisories/24496 | third party advisory patch vendor advisory |
http://secunia.com/advisories/24467 | third party advisory vendor advisory |
http://sourceforge.net/project/shownotes.php?release_id=494462&group_id=175965 | |
http://securityreason.com/securityalert/2436 | third party advisory |
http://www.osvdb.org/33622 | vdb entry |
http://www.osvdb.org/33623 | vdb entry |
http://www.securityfocus.com/bid/22889 | vdb entry patch |