BellaBiblio allows remote attackers to gain administrative privileges via a bellabiblio cookie with the value "administrator." NOTE: this issue is disputed by CVE and multiple third parties because the cookie value must be an MD5 hash
Link | Tags |
---|---|
http://osvdb.org/39032 | vdb entry |
http://www.attrition.org/pipermail/vim/2007-July/001733.html | mailing list |
http://securityreason.com/securityalert/2991 | third party advisory |
http://www.securityfocus.com/bid/25140 | vdb entry |
http://www.securityfocus.com/archive/1/475103/100/0/threaded | mailing list |
http://www.attrition.org/pipermail/vim/2007-July/001736.html | mailing list |
http://www.attrition.org/pipermail/vim/2007-July/001745.html | mailing list |